QID 981430
QID 981430: Python (pip) Security Update for quokka (GHSA-4q2r-qxp6-h5j6)
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-4q2r-qxp6-h5j6 for updates pertaining to this vulnerability.
Vendor References
- GHSA-4q2r-qxp6-h5j6 -
github.com/advisories/GHSA-4q2r-qxp6-h5j6
CVEs related to QID 981430
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-4q2r-qxp6-h5j6 | quokka |
|