Jupyter Scheduler is collection of extensions for programming jobs to run now or run on a schedule. The list of conda environments of jupyter-scheduler users maybe be exposed, potentially revealing information about projects that a specific user may be working on. This vulnerability has been patched in version(s) 1.1.6, 1.2.1, 1.8.2 and 2.5.2.
{
"cwe_ids": [
"CWE-200",
"CWE-287"
],
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/28xxx/CVE-2024-28188.json",
"cna_assigner": "GitHub_M"
}{
"versions": [
{
"introduced": "1.0.0"
},
{
"last_affected": "1.1.5"
}
]
}{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "= 1.2.0"
}
]
}