Security: lfnovo/open-notebook
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
Report a vulnerability-
Arbitrary file read via Local File Inclusion in source creationGHSA-842v-h4cj-r646 published
Apr 9, 2026 by lfnovoHigh -
Arbitrary file write via path traversal in file uploadGHSA-x4q2-89g5-594v published
Apr 9, 2026 by lfnovoHigh -
Remote Code Execution via Jinja2 Server-Side Template Injection in transformationsGHSA-f35w-wx37-26q7 published
Apr 9, 2026 by lfnovoCritical -
SurrealDB injection via unsanitized order_by parameterGHSA-5wj9-f8q5-8f9c published
Apr 7, 2026 by lfnovoHigh
Learn more about advisories related to lfnovo/open-notebook in the GitHub Advisory Database