PyPi: Voila

CVE-2024-30265

Safety vulnerability ID: 71958

This vulnerability was reviewed by experts

The information on this page was manually curated by our Cybersecurity Intelligence Team.

Created at Apr 03, 2024 Updated at Nov 29, 2024
Scan your Python projects for vulnerabilities →

Advisory

Collabora Online is a collaborative online office suite based on LibreOffice technology. Any deployment of the voilà dashboard allows local file inclusion. Any file on a filesystem that is readable by the user that runs the voilà dashboard server can be downloaded by someone with network access to the server. Whether this still requires authentication depends on how voilà is deployed.

Affected package

voila

Latest version: 0.5.8

Voilà turns Jupyter notebooks into standalone web applications

Affected versions

Fixed versions

Vulnerability changelog

This vulnerability has no description

Resources

Use this package?

Scan your Python project for dependency vulnerabilities in two minutes

Scan your application