Site icon API Security Blog

Missing Authentication

jupyter-scheduler is vulnerable to Missing Authentication. The vulnerability is due to a missing authentication check on the /scheduler/runtime_environments API endpoint, allowing unauthenticated users to obtain the list of Conda environment names on the…Read More

Exit mobile version