quokka
Content Management Framework for Python
Activity
- Latest release
- 8y ago
- Total releases
- 13
- Cadence
- ~daily
- Last 12 months
- 0
Details
- License
- unknown
- First release
- Jul 13, 2013
| Version | Released | |
|---|---|---|
0.4.1.dev22
pre
| ||
0.4.1.dev6
pre
| ||
0.4.0
minor
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev | ||
0.3.7.dev1
pre
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev | ||
0.3.6.dev1
pre
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev | ||
0.0.1.dev84
pre
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev | ||
0.3.4
patch
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev | ||
0.3.3
patch
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev | ||
0.3.2
patch
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev | ||
0.3.1
patch
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev | ||
0.3.0
minor
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev | ||
0.2.0
minor
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev | ||
0.1.0
initial
3 CVEs
CVE-2020-18705
GHSA-4q2r-qxp6-h5j6
PYSEC-2021-145
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18703
GHSA-3xg5-6c3j-vp8x
PYSEC-2021-144
Aug 30, 2021
Improper Restriction of XML External Entity Reference in Quokka
9.8
/ 10
Critical
Network
Low
None
None
Unchanged
High
High
High
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 16, 2024 · Source: OSV.dev
CVE-2020-18702
GHSA-5m69-3chg-6f8m
PYSEC-2021-143
Aug 30, 2021
Cross Site Scripting (XSS) in Quokka
Medium
Network
Low
None
Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'. Affected versions
0.0.1.dev84
0.1.0
0.2.0
0.3.0
0.3.1
0.3.2
0.3.3
0.3.4
0.3.6.dev1
0.3.7.dev1
0.4.0
References Updated Oct 24, 2024 · Source: OSV.dev |