Jupyter Scheduler is collection of extensions for programming jobs to run now or run on a schedule. The list of conda environments of `jupyter-scheduler` users maybe be exposed, potentially revealing information about projects that a specific user may be working on. This vulnerability has been patched in version(s) 1.1.6, 1.2.1, 1.8.2 and 2.5.2.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| jupyter-scheduler(PyPI) | 1.0.0 | 1.1.6 | N/A |
| jupyter-scheduler(PyPI) | 1.2.0 | 1.2.1 | N/A |
| jupyter-scheduler(PyPI) | 1.3.0 | 1.8.2 | N/A |
| jupyter-scheduler(PyPI) | 2.0.0 | 2.5.2 | N/A |
CVSS Metrics