Executive brief
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'.
Affected products
- PyPI quokka
Junglewise Threat Intelligence
CVE-2020-18703 · Severity: low · CVSS 3.1 · Published 2021-08-16
Technologies: quokka (PyPI). Vendors: PyPI.
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'.