PYPI · JUNE 2026 · CONFIRMED

Jupyter Enterprise Gateway SSTI Vulnerability: Critical Threat Confirmed

GHSA-F49J-V924-FX9Wghsa-f49j-v924-fx9wSeverity: HIGH

A confirmed high severity vulnerability in Jupyter Enterprise Gateway enables Server Side Template Injection, potentially leading to remote code execution and full cluster compromise.

What happened

The Jupyter Enterprise Gateway is affected by a critical vulnerability (GHSA-f49j-v924-fx9w) that allows Server Side Template Injection (SSTI) in its Kubernetes manifest rendering. This SSTI vulnerability can be exploited to achieve remote code execution, which may result in the theft of Kubernetes secrets and complete cluster compromise. The vulnerability is tracked under CVE-2026-44181 and has been confirmed by multiple independent sources.

To assess your exposure, check if your deployment includes Jupyter Enterprise Gateway and if it is rendering Kubernetes manifests using Jinja2 templates. If so, you are potentially vulnerable. It is recommended to upgrade to the latest version of jupyter_enterprise_gateway and review and sanitize all environment variables used in Kubernetes manifest rendering to mitigate this threat.

For detailed information and mitigation steps, consult the primary sources: [GHSA-cfw7-6c5v-2wjq](https://github.com/advisories/GHSA-cfw7-6c5v-2wjq), [GHSA-chq7-94j8-cj28](https://github.com/advisories/GHSA-chq7-94j8-cj28), and [GHSA-f49j-v924-fx9w](https://github.com/advisories/GHSA-f49j-v924-fx9w).

How 0Day mitigates this

MATCHED TO YOUR ACTUAL DEPENDENCY GRAPH0Day matches every incoming threat signal against your GitHub organization’s full dependency graph, including transitive dependencies. If jupyter_enterprise_gateway is anywhere in your dependency tree, the engineers who own the affected repositories get a push alert the moment it is flagged — no manual audit to remember to run.

Read how this differs from waiting on a scanner to catch a known advisory, or see the exact, read-only access 0Day needs to do this for an organization.

Join the 0Day waitlist →

← Back to all threats