Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Reported upstream: https://github.com/jupyterlab/jupyterlab/issues/18505 So far, it seems jupyterlab is not affected.
It was confirmed upstream that this vulnerability is not exploitable in jupyterlab: https://github.com/jupyterlab/jupyterlab/issues/18505