Turn a Git repo into a collection of interactive notebooks
binderhub has critical vulnerabilities — do not use
Update to >= 0.2.0-n653 to fix known vulnerabilities
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| critical | CVE-2021-39159 | remote code execution via git repo provider | 0.2.0 |
| unknown | CVE-2021-39159 | BinderHub is a kubernetes-based cloud service that allows users to share reproducible interactive computing environments from code repositories. In affected versions a remote code execution vulnerability has been identified in BinderHub, where providing BinderHub with maliciously crafted input could execute code in the BinderHub context, with the potential to egress credentials of the BinderHub deployment, including JupyterHub API tokens, kubernetes service accounts, and docker registry credenti | 0.2.0-n653 |
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/pypi/binderhubLast updated · 2018-11-07T17:41:58.649567Z