Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      BrowserStack launches Figma plugin for detecting accessibility issues in design phase

      July 22, 2025

      Parasoft brings agentic AI to service virtualization in latest release

      July 22, 2025

      Node.js vs. Python for Backend: 7 Reasons C-Level Leaders Choose Node.js Talent

      July 21, 2025

      Handling JavaScript Event Listeners With Parameters

      July 21, 2025

      Debugging UI with AI: GitHub Copilot agent mode meets MCP servers

      July 22, 2025

      Interactive Text Destruction with Three.js, WebGPU, and TSL

      July 22, 2025

      CodeSOD: A Unique Way to Primary Key

      July 22, 2025

      Is ChatGPT down? You’re not alone. Here’s what OpenAI is saying

      July 21, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      Execute Ping Commands and Get Back Structured Data in PHP

      July 21, 2025
      Recent

      Execute Ping Commands and Get Back Structured Data in PHP

      July 21, 2025

      The Intersection of Agile and Accessibility – A Series on Designing for Everyone

      July 21, 2025

      Zero Trust & Cybersecurity Mesh: Your Org’s Survival Guide

      July 21, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      OBS Studio Snap App Gets a Major Upgrade – AI Plugins Inbound

      July 22, 2025
      Recent

      OBS Studio Snap App Gets a Major Upgrade – AI Plugins Inbound

      July 22, 2025

      L’8% dei Pacchetti Sorgente di Debian Utilizza Librerie Rust

      July 22, 2025

      La Disputa su putty.org: Tra Software Open Source e Interessi Commerciali

      July 22, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Security»Common Vulnerabilities and Exposures (CVEs)»CVE-2025-30167 – Jupyter Core Unrestricted Configuration File Path Vulnerability

    CVE-2025-30167 – Jupyter Core Unrestricted Configuration File Path Vulnerability

    June 3, 2025

    CVE ID : CVE-2025-30167

    Published : June 3, 2025, 5:15 p.m. | 2 hours, 15 minutes ago

    Description : Jupyter Core is a package for the core common functionality of Jupyter projects. When using Jupyter Core prior to version 5.8.0 on Windows, the shared `%PROGRAMDATA%` directory is searched for configuration files (`SYSTEM_CONFIG_PATH` and `SYSTEM_JUPYTER_PATH`), which may allow users to create configuration files affecting other users. Only shared Windows systems with multiple users and unprotected `%PROGRAMDATA%` are affected. Users should upgrade to Jupyter Core version 5.8.0 or later to receive a patch. Some other mitigations are available. As administrator, modify the permissions on the `%PROGRAMDATA%` directory so it is not writable by unauthorized users; or as administrator, create the `%PROGRAMDATA%jupyter` directory with appropriately restrictive permissions; or as user or administrator, set the `%PROGRAMDATA%` environment variable to a directory with appropriately restrictive permissions (e.g. controlled by administrators _or_ the current user).

    Severity: 7.3 | HIGH

    Visit the link for more details, such as CVSS details, affected products, timeline, and more…

    Source: Read More

    Facebook Twitter Reddit Email Copy Link
    Previous ArticleCVE-2025-32105 – Sangoma IMG2020 HTTP Server Remote Code Execution Buffer Overflow Vulnerability
    Next Article CVE-2025-23107 – Samsung Exynos Out-of-Bounds Write Vulnerability

    Related Posts

    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-44658 – Netgear RAX30 PHP-FPM Misconfigured Extension Bypass Vulnerability

    July 22, 2025
    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-7393 – Drupal Mail Login Authentication Bypass

    July 22, 2025
    Leave A Reply Cancel Reply

    For security, use of Google's reCAPTCHA service is required which is subject to the Google Privacy Policy and Terms of Use.

    Continue Reading

    CVE-2025-4133 – Blog2Social Cross-Site Scripting (XSS)

    Common Vulnerabilities and Exposures (CVEs)

    Best Chest Doctor Near Me | Parthiv Lung Care

    Web Development

    CVE-2025-7905 – Itsoucecode Insurance Management System SQL Injection Vulnerability

    Common Vulnerabilities and Exposures (CVEs)

    Reddit sues Anthropic for scraping its users’ content without consent

    News & Updates

    Highlights

    How Agentic AI Will Revolutionize Business Automation in 2025🤖

    June 30, 2025

    Post Content Source: Read More 

    CVE-2025-1349 – IBM Sterling B2B Integrator and IBM Sterling File Gateway Cross-Site Scripting

    June 18, 2025

    nativephp/electron

    May 3, 2025

    Firefox 141 Adds AI Tab Grouping, Reduces Memory Use on Linux

    July 21, 2025
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.