Debian Package Tracker
Register | Log in
Subscribe

jupyterlab

Node.js modules for JupyterLab

Choose email to subscribe with

general
  • source: jupyterlab (main)
  • version: 4.0.11+ds2+~cs11.25.27-1
  • maintainer: Debian Javascript Maintainers (archive) (DMD)
  • uploaders: Roland Mas [DMD] – Yadd [DMD]
  • arch: all
  • std-ver: 4.7.2
  • VCS: Git (Browse, QA)
versions [more versions can be listed by madison] [old versions available from snapshot.debian.org]
[pool directory]
  • stable: 4.0.11+ds1+~cs11.25.27-7
  • testing: 4.0.11+ds1+~cs11.25.27-9
  • unstable: 4.0.11+ds2+~cs11.25.27-1
versioned links
  • 4.0.11+ds1+~cs11.25.27-7: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 4.0.11+ds1+~cs11.25.27-9: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 4.0.11+ds2+~cs11.25.27-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
binaries
  • jupyterlab
action needed
A new upstream version is available: 4.6.0a3+~cs9.39.7 high
A new upstream version 4.6.0a3+~cs9.39.7 is available, you should consider packaging it.
Created: 2025-12-04 Last update: 2026-03-11 18:49
lintian reports 1 error and 21 warnings high
Lintian reports 1 error and 21 warnings about this package. You should make the package lintian clean getting rid of them.
Created: 2026-03-08 Last update: 2026-03-08 20:30
1 security issue in sid high

There is 1 open security issue in sid.

1 important issue:
  • CVE-2025-59842: jupyterlab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. Prior to version 4.4.8, links generated with LaTeX typesetters in Markdown files and Markdown cells in JupyterLab and Jupyter Notebook did not include the noopener attribute. This is deemed to have no impact on the default installations. Theoretically users of third-party LaTeX-rendering extensions could find themselves vulnerable to reverse tabnabbing attacks if links generated by those extensions included target=_blank (no such extensions are known at time of writing) and they were to click on a link generated in LaTeX (typically visibly different from other links). This issue has been patched in version 4.4.8.
Created: 2025-09-27 Last update: 2026-03-08 16:01
1 security issue in forky high

There is 1 open security issue in forky.

1 important issue:
  • CVE-2025-59842: jupyterlab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. Prior to version 4.4.8, links generated with LaTeX typesetters in Markdown files and Markdown cells in JupyterLab and Jupyter Notebook did not include the noopener attribute. This is deemed to have no impact on the default installations. Theoretically users of third-party LaTeX-rendering extensions could find themselves vulnerable to reverse tabnabbing attacks if links generated by those extensions included target=_blank (no such extensions are known at time of writing) and they were to click on a link generated in LaTeX (typically visibly different from other links). This issue has been patched in version 4.4.8.
Created: 2025-09-27 Last update: 2026-03-08 16:01
Does not build reproducibly during testing normal
A package building reproducibly enables third parties to verify that the source matches the distributed binaries. It has been identified that this source package produced different results, failed to build or had other issues in a test environment. Please read about how to improve the situation!
Created: 2026-01-14 Last update: 2026-03-11 23:30
version in VCS is newer than in repository, is it time to upload? normal
vcswatch reports that this package seems to have a new changelog entry (version 4.0.11+ds2+~cs11.25.27-2, distribution unstable) and new commits in its VCS. You should consider whether it's time to make an upload.

Here are the relevant commit messages:
commit 2e749e2451c772785e630805a2f7b7de3a8bf593
Author: Bastien Roucariès <rouca@debian.org>
Date:   Sun Mar 8 15:06:18 2026 +0100

    Add ts-jest for testing

commit 7d6bf2460a5263aa7d9815831f93ba65ca1b8fe1
Author: Bastien Roucariès <rouca@debian.org>
Date:   Sun Mar 8 14:28:31 2026 +0100

    Enable test for js

commit b8458aef508c9b4c43ccd3dc888d95103cdb5684
Author: Bastien Roucariès <rouca@debian.org>
Date:   Sun Mar 8 13:35:52 2026 +0100

    fetch is called node-fetch

commit 54be8c1da5343a392a6fd4e194adac9534a87de5
Author: Bastien Roucariès <rouca@debian.org>
Date:   Sun Mar 8 13:06:10 2026 +0100

    Add test at build time
Created: 2025-12-04 Last update: 2026-03-08 15:32
AppStream hints: 1 warning for jupyterlab normal
AppStream found metadata issues for packages:
  • jupyterlab: 1 warning
You should get rid of them to provide more metadata about this software.
Created: 2025-06-05 Last update: 2025-06-05 23:30
1 low-priority security issue in trixie low

There is 1 open security issue in trixie.

1 issue left for the package maintainer to handle:
  • CVE-2025-59842: (needs triaging) jupyterlab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook Architecture. Prior to version 4.4.8, links generated with LaTeX typesetters in Markdown files and Markdown cells in JupyterLab and Jupyter Notebook did not include the noopener attribute. This is deemed to have no impact on the default installations. Theoretically users of third-party LaTeX-rendering extensions could find themselves vulnerable to reverse tabnabbing attacks if links generated by those extensions included target=_blank (no such extensions are known at time of writing) and they were to click on a link generated in LaTeX (typically visibly different from other links). This issue has been patched in version 4.4.8.

You can find information about how to handle this issue in the security team's documentation.

Created: 2025-09-27 Last update: 2026-03-08 16:01
Standards version of the package is outdated. wishlist
The package should be updated to follow the last version of Debian Policy (Standards-Version 4.7.3 instead of 4.7.2).
Created: 2025-12-23 Last update: 2026-03-08 19:00
testing migrations
  • excuses:
    • Migration status for jupyterlab (4.0.11+ds1+~cs11.25.27-9 to 4.0.11+ds2+~cs11.25.27-1): Waiting for test results or another package, or too young (no action required now - check later)
    • Issues preventing migration:
    • ∙ ∙ Too young, only 4 of 5 days old
    • Additional info (not blocking):
    • ∙ ∙ Piuparts tested OK - https://piuparts.debian.org/sid/source/j/jupyterlab.html
    • ∙ ∙ Autopkgtest for jupyterlab/4.0.11+ds2+~cs11.25.27-1: amd64: No tests, superficial or marked flaky ♻ (reference ♻), arm64: No tests, superficial or marked flaky ♻ (reference ♻), i386: No tests, superficial or marked flaky ♻, ppc64el: No tests, superficial or marked flaky ♻, riscv64: No tests, superficial or marked flaky ♻, s390x: No tests, superficial or marked flaky ♻
    • ∙ ∙ Reproduced on amd64
    • ∙ ∙ Reproduced on arm64
    • ∙ ∙ Reproduced on armhf
    • ∙ ∙ Reproduced on i386
    • ∙ ∙ Reproduced on ppc64el
    • Not considered
news
[rss feed]
  • [2026-03-08] Accepted jupyterlab 4.0.11+ds2+~cs11.25.27-1 (source) into unstable (Bastien Roucariès) (signed by: Bastien ROUCARIÈS)
  • [2025-12-09] jupyterlab 4.0.11+ds1+~cs11.25.27-9 MIGRATED to testing (Debian testing watch)
  • [2025-12-03] Accepted jupyterlab 4.0.11+ds1+~cs11.25.27-9 (source) into unstable (Bastien Roucariès) (signed by: Bastien ROUCARIÈS)
  • [2025-11-13] jupyterlab 4.0.11+ds1+~cs11.25.27-8 MIGRATED to testing (Debian testing watch)
  • [2025-11-07] Accepted jupyterlab 4.0.11+ds1+~cs11.25.27-8 (source) into unstable (Yadd) (signed by: Xavier Guimard)
  • [2025-06-26] jupyterlab 4.0.11+ds1+~cs11.25.27-7 MIGRATED to testing (Debian testing watch)
  • [2025-06-05] Accepted jupyterlab 4.0.11+ds1+~cs11.25.27-7 (source) into unstable (Picca Frédéric-Emmanuel)
  • [2025-04-08] jupyterlab 4.0.11+ds1+~cs11.25.27-6 MIGRATED to testing (Debian testing watch)
  • [2025-04-02] Accepted jupyterlab 4.0.11+ds1+~cs11.25.27-6 (source) into unstable (Yadd) (signed by: Xavier Guimard)
  • [2025-03-28] jupyterlab 4.0.11+ds1+~cs11.25.27-5 MIGRATED to testing (Debian testing watch)
  • [2025-03-22] Accepted jupyterlab 4.0.11+ds1+~cs11.25.27-5 (source) into unstable (Roland Mas)
  • [2024-12-31] jupyterlab 4.0.11+ds1+~cs11.25.27-4 MIGRATED to testing (Debian testing watch)
  • [2024-12-26] Accepted jupyterlab 4.0.11+ds1+~cs11.25.27-4 (source) into unstable (Yadd) (signed by: Xavier Guimard)
  • [2024-12-01] jupyterlab 4.0.11+ds1+~cs11.25.27-3 MIGRATED to testing (Debian testing watch)
  • [2024-11-25] Accepted jupyterlab 4.0.11+ds1+~cs11.25.27-3 (source) into unstable (Yadd) (signed by: Xavier Guimard)
  • [2024-09-03] jupyterlab 4.0.11+ds1+~cs11.25.27-2 MIGRATED to testing (Debian testing watch)
  • [2024-08-27] Accepted jupyterlab 4.0.11+ds1+~cs11.25.27-2 (source) into unstable (Yadd) (signed by: Xavier Guimard)
  • [2024-08-12] Accepted jupyterlab 4.0.11+ds1+~cs11.25.27-1 (source all) into unstable (Debian FTP Masters) (signed by: Xavier Guimard)
  • [2024-05-14] jupyterlab REMOVED from testing (Debian testing watch)
  • [2024-04-07] jupyterlab 4.0.11+ds1-2 MIGRATED to testing (Debian testing watch)
  • [2024-03-19] Accepted jupyterlab 4.0.11+ds1-2 (source) into unstable (Roland Mas)
  • [2024-01-22] Accepted jupyterlab 4.0.11+ds1-1 (source) into unstable (Roland Mas)
  • [2024-01-12] Accepted jupyterlab 4.0.10+ds1-1 (source all) into unstable (Roland Mas)
  • [2023-12-26] Accepted jupyterlab 4.0.9+ds1-1 (source) into unstable (Roland Mas)
  • [2023-11-14] Accepted jupyterlab 4.0.8+ds1-2 (source) into unstable (Roland Mas)
  • [2023-11-11] Accepted jupyterlab 4.0.8+ds1-1 (source all) into unstable (Debian FTP Masters) (signed by: Roland Mas)
bugs [bug history graph]
  • all: 3
  • RC: 0
  • I&N: 3
  • M&W: 0
  • F&P: 0
  • patch: 0
links
  • homepage
  • lintian (1, 21)
  • buildd: logs, reproducibility
  • popcon
  • browse source code
  • edit tags
  • other distros
  • security tracker
  • debian patches
  • debci
ubuntu Ubuntu logo [Information about Ubuntu for Debian Developers]
  • version: 4.0.11+ds1+~cs11.25.27-9

Debian Package Tracker — Copyright 2013-2025 The Distro Tracker Developers
Report problems to the tracker.debian.org pseudo-package in the Debian BTS.
Documentation — Bugs — Git Repository — Contributing