CVE-2020-18705: Quokka Project Quokka
Critical severity, CVSS 9.8. EPSS: 2.8% chance of exploitation in the next 30 days.
XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'.
Affected products
- Quokka Project Quokka: version 0.4.0 only
Published 2021-08-16. Last modified 2026-06-17.