QID 981433
QID 981433: Python (pip) Security Update for quokka (GHSA-3xg5-6c3j-vp8x)
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-3xg5-6c3j-vp8x for updates pertaining to this vulnerability.
Vendor References
- GHSA-3xg5-6c3j-vp8x -
github.com/advisories/GHSA-3xg5-6c3j-vp8x
CVEs related to QID 981433
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-3xg5-6c3j-vp8x | quokka |
|