<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Keycloak (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/keycloak.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/keycloak-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Keycloak (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:36 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-9795 – A flaw was found in Keycloak's Fine-Grained Admin Permissions (FGAPv2) feature. ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-9795</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-9795</guid>
    <pubDate>Thu, 28 May 2026 05:16:41 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-9795</strong></p>
  <p>A flaw was found in Keycloak's Fine-Grained Admin Permissions (FGAPv2) feature. An administrator with limited client management permissions can exploit this vulnerability to assign any realm role, including highly privileged roles, to a client's scope mapping. This bypasses intended security controls, allowing the injected role to be projected into a user's authentication token when they access t…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-266</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-9795">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7571 – A flaw was found in Keycloak. A low-privilege user, with knowledge of user crede...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7571</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7571</guid>
    <pubDate>Tue, 19 May 2026 12:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7571</strong></p>
  <p>A flaw was found in Keycloak. A low-privilege user, with knowledge of user credentials and client ID, can bypass a security control intended to disable the implicit flow in OpenID Connect (OIDC) clients. By manipulating client data during a session restart, an attacker can obtain an access token that should not be available. This vulnerability can also lead to the exposure of these access tokens…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-472</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7571">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7507 – A session fixation vulnerability was found in Keycloak's login-actions endpoints...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7507</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7507</guid>
    <pubDate>Tue, 19 May 2026 12:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7507</strong></p>
  <p>A session fixation vulnerability was found in Keycloak's login-actions endpoints. An unauthenticated attacker could exploit this flaw by pre-creating an authentication session and tricking a victim into visiting a maliciously crafted link. By leveraging the /login-actions/restart endpoint—which processes session handles without adequate CSRF protection or cookie ownership validation—an attacker c…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-290</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7507">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7504 – A flaw was found in Keycloak's URL validation logic during redirect operations. ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7504</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7504</guid>
    <pubDate>Tue, 19 May 2026 12:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7504</strong></p>
  <p>A flaw was found in Keycloak's URL validation logic during redirect operations. By crafting a malicious request, an attacker could bypass validation to redirect users to unauthorized URLs, potentially leading to the exposure of sensitive information within the domain or facilitating further attacks. This vulnerability specifically affects Keycloak clients configured with a wildcard (*) in the "Va…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-601</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7504">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-7307 – A flaw was found in Keycloak. A remote, unauthenticated attacker can send a spec...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-7307</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-7307</guid>
    <pubDate>Tue, 19 May 2026 12:16:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-7307</strong></p>
  <p>A flaw was found in Keycloak. A remote, unauthenticated attacker can send a specially crafted XML input to the Security Assertion Markup Language (SAML) endpoint. This malicious input can cause high CPU usage and worker thread starvation, leading to a Denial of Service (DoS) where the server becomes unavailable.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-1286</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-7307">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-41166 – OpenRemote is an open-source internet-of-things platform. Prior to version 1.22...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-41166</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-41166</guid>
    <pubDate>Wed, 22 Apr 2026 21:17:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-41166</strong></p>
  <p>OpenRemote is an open-source internet-of-things platform. Prior to version 1.22.1, a user who has `write:admin` in one Keycloak realm can call the Manager API to update Keycloak realm roles for users in another realm, including `master`. The handler uses the `{realm}` path segment when talking to the identity provider but does not check that the caller may administer that realm. This could result…</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-41166">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4636 – A flaw was found in Keycloak. An authenticated user with the uma_protection role...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4636</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4636</guid>
    <pubDate>Thu, 02 Apr 2026 13:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4636</strong></p>
  <p>A flaw was found in Keycloak. An authenticated user with the uma_protection role can bypass User-Managed Access (UMA) policy validation. This allows the attacker to include resource identifiers owned by other users in a policy creation request, even if the URL path specifies an attacker-owned resource. Consequently, the attacker gains unauthorized permissions to victim-owned resources, enabling t…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-551</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4636">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4634 – A flaw was found in Keycloak. An unauthenticated attacker can exploit this vulne...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4634</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4634</guid>
    <pubDate>Thu, 02 Apr 2026 13:16:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4634</strong></p>
  <p>A flaw was found in Keycloak. An unauthenticated attacker can exploit this vulnerability by sending a specially crafted POST request with an excessively long scope parameter to the OpenID Connect (OIDC) token endpoint. This leads to high resource consumption and prolonged processing times, ultimately resulting in a Denial of Service (DoS) for the Keycloak server.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-1050</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4634">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-4282 – A flaw was found in Keycloak. The SingleUseObjectProvider, a global key-value st...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-4282</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-4282</guid>
    <pubDate>Thu, 02 Apr 2026 13:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-4282</strong></p>
  <p>A flaw was found in Keycloak. The SingleUseObjectProvider, a global key-value store, lacks proper type and namespace isolation. This vulnerability allows an unauthenticated attacker to forge authorization codes. Successful exploitation can lead to the creation of admin-capable access tokens, resulting in privilege escalation.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-653</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-4282">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-3872 – A flaw was found in Keycloak. This issue allows an attacker, who controls anothe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3872</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3872</guid>
    <pubDate>Thu, 02 Apr 2026 13:16:26 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-3872</strong></p>
  <p>A flaw was found in Keycloak. This issue allows an attacker, who controls another path on the same web server, to bypass the allowed path in redirect Uniform Resource Identifiers (URIs) that use a wildcard. A successful attack may lead to the theft of an access token, resulting in information disclosure.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-601</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3872">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-2603 – A flaw was found in Keycloak. A remote attacker could bypass security controls b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-2603</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-2603</guid>
    <pubDate>Wed, 18 Mar 2026 02:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-2603</strong></p>
  <p>A flaw was found in Keycloak. A remote attacker could bypass security controls by sending a valid SAML response from an external Identity Provider (IdP) to the Keycloak SAML endpoint for IdP-initiated broker logins. This allows the attacker to complete broker logins even when the SAML Identity Provider is disabled, leading to unauthorized authentication.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-306</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-2603">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-2092 – A flaw was found in Keycloak. Keycloak's Security Assertion Markup Language (SAM...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-2092</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-2092</guid>
    <pubDate>Wed, 18 Mar 2026 02:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-2092</strong></p>
  <p>A flaw was found in Keycloak. Keycloak's Security Assertion Markup Language (SAML) broker endpoint does not properly validate encrypted assertions when the overall SAML response is not signed. An attacker with a valid signed SAML assertion can exploit this by crafting a malicious SAML response. This allows the attacker to inject an encrypted assertion for an arbitrary principal, leading to unauth…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-1287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-2092">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-30949 – Parse Server is an open source backend that can be deployed to any infrastructur...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-30949</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-30949</guid>
    <pubDate>Tue, 10 Mar 2026 21:16:47 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-30949</strong></p>
  <p>Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 9.5.2-alpha.5 and 8.6.18, the Keycloak authentication adapter does not validate the azp (authorized party) claim of Keycloak access tokens against the configured client-id. A valid access token issued by the same Keycloak realm for a different client application can be used to authenti…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-30949">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-3047 – A flaw was found in org.keycloak.broker.saml. When a disabled Security Assertion...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3047</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3047</guid>
    <pubDate>Thu, 05 Mar 2026 19:16:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-3047</strong></p>
  <p>A flaw was found in org.keycloak.broker.saml. When a disabled Security Assertion Markup Language (SAML) client is configured as an Identity Provider (IdP)-initiated broker landing target, it can still complete the login process and establish a Single Sign-On (SSO) session. This allows a remote attacker to gain unauthorized access to other enabled clients without re-authentication, effectively byp…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-305</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3047">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-3009 – A security flaw in the IdentityBrokerService.performLogin endpoint of Keycloak a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-3009</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-3009</guid>
    <pubDate>Thu, 05 Mar 2026 19:16:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-3009</strong></p>
  <p>A security flaw in the IdentityBrokerService.performLogin endpoint of Keycloak allows authentication to proceed using an Identity Provider (IdP) even after it has been disabled by an administrator. An attacker who knows the IdP alias can reuse a previously generated login request to bypass the administrative restriction. This undermines access control enforcement and may allow unauthorized authen…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-3009">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-23552 – Cross-Realm Token Acceptance Bypass in KeycloakSecurityPolicy Apache Camel Keycl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-23552</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-23552</guid>
    <pubDate>Mon, 23 Feb 2026 09:17:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-23552</strong></p>
  <p>Cross-Realm Token Acceptance Bypass in KeycloakSecurityPolicy Apache Camel Keycloak component.   The Camel-Keycloak KeycloakSecurityPolicy does not validate the iss (issuer) claim of JWT tokens against the configured realm. A token issued by one Keycloak realm is silently accepted by a policy configured for a completely different realm, breaking tenant isolation. This issue affects Apache Camel:…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-346</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-23552">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-1529 – A flaw was found in Keycloak. An attacker can exploit this vulnerability by modi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1529</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1529</guid>
    <pubDate>Mon, 09 Feb 2026 20:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-1529</strong></p>
  <p>A flaw was found in Keycloak. An attacker can exploit this vulnerability by modifying the organization ID and target email within a legitimate invitation token's JSON Web Token (JWT) payload. This lack of cryptographic signature verification allows the attacker to successfully self-register into an unauthorized organization, leading to unauthorized access.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-347</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1529">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-1486 – A flaw was found in Keycloak. A vulnerability exists in the jwt-authorization-gr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-1486</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-1486</guid>
    <pubDate>Mon, 09 Feb 2026 20:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-1486</strong></p>
  <p>A flaw was found in Keycloak. A vulnerability exists in the jwt-authorization-grant flow where the server fails to verify if an Identity Provider (IdP) is enabled before issuing tokens. The issuer lookup mechanism (lookupIdentityProviderFromIssuer) retrieves the IdP configuration but does not filter for isEnabled=false. If an administrator disables an IdP (e.g., due to a compromise or offboarding…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-358</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-1486">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-11419 – A flaw was found in Keycloak. This vulnerability allows an unauthenticated remot...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-11419</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-11419</guid>
    <pubDate>Tue, 23 Dec 2025 21:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-11419</strong></p>
  <p>A flaw was found in Keycloak. This vulnerability allows an unauthenticated remote attacker to cause a denial of service (DoS) by repeatedly initiating TLS 1.2 client-initiated renegotiation requests to exhaust server CPU resources, making the service unavailable.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-11419">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-7365 – A flaw was found in Keycloak. When an authenticated attacker attempts to merge a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-7365</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-7365</guid>
    <pubDate>Thu, 10 Jul 2025 15:15:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-7365</strong></p>
  <p>A flaw was found in Keycloak. When an authenticated attacker attempts to merge accounts with another existing account during an identity provider (IdP) login, the attacker will subsequently be prompted to "review profile" information. This vulnerability allows the attacker to modify their email address to match that of a victim's account, triggering a verification email sent to the victim's email…</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-346</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-7365">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49006 – Wasp (Web Application Specification) is a Rails-like framework for React, Node.j...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49006</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49006</guid>
    <pubDate>Mon, 09 Jun 2025 13:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49006</strong></p>
  <p>Wasp (Web Application Specification) is a Rails-like framework for React, Node.js, and Prisma. Prior to version 0.16.6, Wasp authentication has a vulnerability in the OAuth authentication implementation (affecting only Keycloak with a specific config). Wasp currently lowercases OAuth user IDs before storing / fetching them. This behavior violates OAuth and OpenID Connect specifications and can re…</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49006">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-3501 – A flaw was found in Keycloak. By setting a verification policy to 'ALL', the tru...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-3501</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-3501</guid>
    <pubDate>Tue, 29 Apr 2025 21:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-3501</strong></p>
  <p>A flaw was found in Keycloak. By setting a verification policy to 'ALL', the trust store certificate verification is skipped, which is unintended.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-297</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-3501">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-53843 – @dapperduckling/keycloak-connector-server is an opinionated series of libraries ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-53843</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-53843</guid>
    <pubDate>Tue, 26 Nov 2024 00:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-53843</strong></p>
  <p>@dapperduckling/keycloak-connector-server is an opinionated series of libraries for Node.js applications and frontend clients to interface with keycloak. A Reflected Cross-Site Scripting (XSS) vulnerability was discovered in the authentication flow of the application. This issue arises due to improper sanitization of the URL parameters, allowing the URL bar's contents to be injected and reflected…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-53843">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-2232 – A flaw was found in the Keycloak package. This flaw allows an attacker to utiliz...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-2232</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-2232</guid>
    <pubDate>Thu, 14 Nov 2024 15:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-2232</strong></p>
  <p>A flaw was found in the Keycloak package. This flaw allows an attacker to utilize an LDAP injection to bypass the username lookup or potentially perform other malicious actions.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-2232">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-3656 – A flaw was found in Keycloak. Certain endpoints in Keycloak's admin REST API all...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-3656</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-3656</guid>
    <pubDate>Wed, 09 Oct 2024 19:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-3656</strong></p>
  <p>A flaw was found in Keycloak. Certain endpoints in Keycloak's admin REST API allow low-privilege users to access administrative functionalities. This flaw allows users to perform actions reserved for administrators, potentially leading to data breaches or system compromise.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-3656">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-8698 – A flaw exists in the SAML signature validation method within the Keycloak XMLSig...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-8698</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-8698</guid>
    <pubDate>Thu, 19 Sep 2024 16:15:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-8698</strong></p>
  <p>A flaw exists in the SAML signature validation method within the Keycloak XMLSignatureUtil class. The method incorrectly determines whether a SAML signature is for the full document or only for specific assertions based on the position of the signature in the XML document, rather than the Reference element used to specify the signed element. This flaw allows attackers to create crafted responses…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-347</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-8698">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-6841 – A denial of service vulnerability was found in keycloak where the amount of attr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-6841</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-6841</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-6841</strong></p>
  <p>A denial of service vulnerability was found in keycloak where the amount of attributes per object is not limited,an attacker by sending repeated HTTP requests could cause a resource exhaustion when the application send back rows with long attribute values.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-231</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-6841">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-7341 – A session fixation issue was discovered in the SAML adapters provided by Keycloa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-7341</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-7341</guid>
    <pubDate>Mon, 09 Sep 2024 19:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-7341</strong></p>
  <p>A session fixation issue was discovered in the SAML adapters provided by Keycloak. The session ID and JSESSIONID cookie are not changed at login time, even when the turnOffChangeSessionIdOnLogin option is configured. This flaw allows an attacker who hijacks the current session before authentication to trigger session fixation.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-384</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-7341">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-4540 – A flaw was found in Keycloak in OAuth 2.0 Pushed Authorization Requests (PAR). C...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-4540</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-4540</guid>
    <pubDate>Mon, 03 Jun 2024 16:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-4540</strong></p>
  <p>A flaw was found in Keycloak in OAuth 2.0 Pushed Authorization Requests (PAR). Client-provided parameters were found to be included in plain text in the KC_RESTART cookie returned by the authorization server's HTTP response to a `request_uri` authorization request, possibly leading to an information disclosure vulnerability.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-312</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-4540">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-34706 – Valtimo is an open source business process and case management platform. When op...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-34706</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-34706</guid>
    <pubDate>Tue, 14 May 2024 15:39:29 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-34706</strong></p>
  <p>Valtimo is an open source business process and case management platform. When opening a form in Valtimo, the access token (JWT) of the user is exposed to `api.form.io` via the the `x-jwt-token` header. An attacker can retrieve personal information from this token, or use it to execute requests to the Valtimo REST API on behalf of the logged-in user. This issue is caused by a misconfiguration of t…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-34706">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-2419 – A flaw was found in Keycloak's redirect_uri validation logic. This issue may all...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-2419</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-2419</guid>
    <pubDate>Wed, 17 Apr 2024 14:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-2419</strong></p>
  <p>A flaw was found in Keycloak's redirect_uri validation logic. This issue may allow a bypass of otherwise explicitly allowed hosts. A successful attack may lead to the theft of an access token, making it possible for the attacker to impersonate other users. It is very similar to CVE-2023-6291.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-601</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-2419">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-1249 – A flaw was found in Keycloak's OIDC component in the "checkLoginIframe," which a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-1249</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-1249</guid>
    <pubDate>Wed, 17 Apr 2024 14:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-1249</strong></p>
  <p>A flaw was found in Keycloak's OIDC component in the "checkLoginIframe," which allows unvalidated cross-origin messages. This flaw allows attackers to coordinate and send millions of requests in seconds using simple code, significantly impacting the application's availability without proper origin validation for incoming messages.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-346</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-1249">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-1132 – A flaw was found in Keycloak, where it does not properly validate URLs included ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-1132</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-1132</guid>
    <pubDate>Wed, 17 Apr 2024 14:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-1132</strong></p>
  <p>A flaw was found in Keycloak, where it does not properly validate URLs included in a redirect. This issue could allow an attacker to construct a malicious request to bypass validation and access other URLs and sensitive information within the domain or conduct further attacks. This flaw affects any client that utilizes a wildcard in the Valid Redirect URIs field, and requires user interaction wit…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-1132">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-6291 – A flaw was found in the redirect_uri validation logic in Keycloak. This issue ma...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-6291</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-6291</guid>
    <pubDate>Fri, 26 Jan 2024 15:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-6291</strong></p>
  <p>A flaw was found in the redirect_uri validation logic in Keycloak. This issue may allow a bypass of otherwise explicitly allowed hosts. A successful attack may lead to an access token being stolen, making it possible for the attacker to impersonate other users.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-601</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-6291">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-6563 – An unconstrained memory consumption vulnerability was discovered in Keycloak. It...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-6563</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-6563</guid>
    <pubDate>Thu, 14 Dec 2023 18:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-6563</strong></p>
  <p>An unconstrained memory consumption vulnerability was discovered in Keycloak. It can be triggered in environments which have millions of offline tokens (> 500,000 users with each having at least 2 saved sessions). If an attacker creates two or more user sessions and then open the "consents" tab of the admin User Interface, the UI attempts to load a huge number of offline client sessions leading t…</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-6563">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-4137 – A reflected cross-site scripting (XSS) vulnerability was found in the 'oob' OAut...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-4137</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-4137</guid>
    <pubDate>Mon, 25 Sep 2023 20:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-4137</strong></p>
  <p>A reflected cross-site scripting (XSS) vulnerability was found in the 'oob' OAuth endpoint due to incorrect null-byte handling. This issue allows a malicious link to insert an arbitrary URI into a Keycloak error page. This flaw requires a user or administrator to interact with a link in order to be vulnerable. This may compromise user details, allowing it to be changed or collected by an attacker.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-81</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-4137">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-4918 – A flaw was found in the Keycloak package, more specifically org.keycloak.userpro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-4918</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-4918</guid>
    <pubDate>Tue, 12 Sep 2023 20:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-4918</strong></p>
  <p>A flaw was found in the Keycloak package, more specifically org.keycloak.userprofile. When a user registers itself through registration flow, the "password" and "password-confirm" field from the form will occur as regular user attributes. All users and clients with proper rights and roles are able to read users attributes, allowing a malicious user with minimal access to retrieve the users passwo…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-256</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-4918">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-4361 – Keycloak, an open-source identity and access management solution, has a cross-si...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-4361</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-4361</guid>
    <pubDate>Fri, 07 Jul 2023 20:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-4361</strong></p>
  <p>Keycloak, an open-source identity and access management solution, has a cross-site scripting (XSS) vulnerability in the SAML or OIDC providers. The vulnerability can allow an attacker to execute malicious scripts by setting the AssertionConsumerServiceURL value or the redirect_uri.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-81</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-4361">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-1477 – Improper Authentication vulnerability in HYPR Keycloak Authenticator Extension a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-1477</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-1477</guid>
    <pubDate>Fri, 28 Apr 2023 15:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-1477</strong></p>
  <p>Improper Authentication vulnerability in HYPR Keycloak Authenticator Extension allows Authentication Abuse.This issue affects HYPR Keycloak Authenticator Extension: before 7.10.2, before 8.0.3.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-1477">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-24456 – Jenkins Keycloak Authentication Plugin 2.3.0 and earlier does not invalidate the...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-24456</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-24456</guid>
    <pubDate>Thu, 26 Jan 2023 21:18:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-24456</strong></p>
  <p>Jenkins Keycloak Authentication Plugin 2.3.0 and earlier does not invalidate the previous session on login.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-384</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-24456">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-3782 – keycloak: path traversal via double URL encoding. A flaw was found in Keycloak, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-3782</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-3782</guid>
    <pubDate>Fri, 13 Jan 2023 06:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-3782</strong></p>
  <p>keycloak: path traversal via double URL encoding. A flaw was found in Keycloak, where it does not properly validate URLs included in a redirect. An attacker can use this flaw to construct a malicious request to bypass validation and access other URLs and potentially sensitive information within the domain or possibly conduct further attacks. This flaw affects any client that utilizes a wildcard i…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-3782">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-36051 – ZITADEL combines the ease of Auth0 and the versatility of Keycloak.**Actions**, ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-36051</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-36051</guid>
    <pubDate>Wed, 31 Aug 2022 23:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-36051</strong></p>
  <p>ZITADEL combines the ease of Auth0 and the versatility of Keycloak.**Actions**, introduced in ZITADEL **1.42.0** on the API and **1.56.0** for Console, is a feature, where users with role.`ORG_OWNER` are able to create Javascript Code, which is invoked by the system at certain points during the login. **Actions**, for example, allow creating authorizations (user grants) on newly created users pro…</p>
  <p><strong>CVSS:</strong> 8.7 · <strong>CWE:</strong> CWE-436</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-36051">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3632 – A flaw was found in Keycloak. This vulnerability allows anyone to register a new...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3632</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3632</guid>
    <pubDate>Fri, 26 Aug 2022 16:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3632</strong></p>
  <p>A flaw was found in Keycloak. This vulnerability allows anyone to register a new security device or key when there is not a device already registered for any user by using the WebAuthn password-less login flow.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3632">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3513 – A flaw was found in keycloak where a brute force attack is possible even when th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3513</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3513</guid>
    <pubDate>Mon, 22 Aug 2022 15:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3513</strong></p>
  <p>A flaw was found in keycloak where a brute force attack is possible even when the permanent lockout feature is enabled. This is due to a wrong error message displayed when wrong credentials are entered. The highest threat from this vulnerability is to confidentiality.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-522</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3513">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-2668 – An issue was discovered in Keycloak that allows arbitrary Javascript to be uploa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-2668</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-2668</guid>
    <pubDate>Fri, 05 Aug 2022 17:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-2668</strong></p>
  <p>An issue was discovered in Keycloak that allows arbitrary Javascript to be uploaded for the SAML protocol mapper even if the UPLOAD_SCRIPTS feature is disabled</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-2668">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-1245 – A privilege escalation flaw was found in the token exchange feature of keycloak...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-1245</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-1245</guid>
    <pubDate>Fri, 08 Jul 2022 00:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-1245</strong></p>
  <p>A privilege escalation flaw was found in the token exchange feature of keycloak. Missing authorization allows a client application holding a valid access token to exchange tokens for any target client by passing the client_id of the target. This could allow a client to gain unauthorized access to additional services.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-1245">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3461 – A flaw was found in keycloak where keycloak may fail to logout user session if t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3461</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3461</guid>
    <pubDate>Fri, 01 Apr 2022 23:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3461</strong></p>
  <p>A flaw was found in keycloak where keycloak may fail to logout user session if the logout request comes from external SAML identity provider and Principal Type is set to Attribute [Name].</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-613</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3461">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-4133 – A flaw was found in Keycloak in versions from 12.0.0 and before 15.1.1 which all...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-4133</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-4133</guid>
    <pubDate>Tue, 25 Jan 2022 20:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-4133</strong></p>
  <p>A flaw was found in Keycloak in versions from 12.0.0 and before 15.1.1 which allows an attacker with any existing user account to create new default user accounts via the administrative REST API even when new user registration is disabled.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-4133">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3637 – A flaw was found in keycloak-model-infinispan in keycloak versions before 14.0.0...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3637</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3637</guid>
    <pubDate>Fri, 09 Jul 2021 11:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3637</strong></p>
  <p>A flaw was found in keycloak-model-infinispan in keycloak versions before 14.0.0 where authenticationSessions map in RootAuthenticationSessionEntity grows boundlessly which could lead to a DoS attack.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3637">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-20195 – A flaw was found in keycloak in versions before 13.0.0. A Self Stored XSS attack...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-20195</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-20195</guid>
    <pubDate>Fri, 28 May 2021 11:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-20195</strong></p>
  <p>A flaw was found in keycloak in versions before 13.0.0. A Self Stored XSS attack vector escalating to a complete account takeover is possible due to user-supplied data fields not being properly encoded and Javascript code being used to process the data. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-20195">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-20202 – A flaw was found in keycloak. Directories can be created prior to the Java proce...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-20202</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-20202</guid>
    <pubDate>Wed, 12 May 2021 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-20202</strong></p>
  <p>A flaw was found in keycloak. Directories can be created prior to the Java process creating them in the temporary directory, but with wider user permissions, allowing the attacker to have access to the contents that keycloak stores in this directory. The highest threat from this vulnerability is to data confidentiality and integrity.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-377</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-20202">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-20222 – A flaw was found in keycloak. The new account console in keycloak can allow mali...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-20222</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-20222</guid>
    <pubDate>Tue, 23 Mar 2021 17:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-20222</strong></p>
  <p>A flaw was found in keycloak. The new account console in keycloak can allow malicious code to be executed using the referrer URL. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-20222">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-3141 – In Unisys Stealth (core) before 6.0.025.0, the Keycloak password is stored in a ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3141</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3141</guid>
    <pubDate>Thu, 18 Mar 2021 05:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-3141</strong></p>
  <p>In Unisys Stealth (core) before 6.0.025.0, the Keycloak password is stored in a recoverable format that might be accessible by a local attacker, who could gain access to the Management Server and change the Stealth configuration.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-522</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3141">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-14359 – A vulnerability was found in all versions of Keycloak Gatekeeper, where on using...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14359</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14359</guid>
    <pubDate>Tue, 23 Feb 2021 13:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-14359</strong></p>
  <p>A vulnerability was found in all versions of Keycloak Gatekeeper, where on using lower case HTTP headers (via cURL) an attacker can bypass our Gatekeeper. Lower case headers are also accepted by some webservers (e.g. Jetty). This means there is no protection when we put a Gatekeeper in front of a Jetty server and use lowercase headers.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-305</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14359">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-14389 – It was found that Keycloak before version 12.0.0 would permit a user with only v...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14389</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14389</guid>
    <pubDate>Tue, 17 Nov 2020 02:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-14389</strong></p>
  <p>It was found that Keycloak before version 12.0.0 would permit a user with only view-profile role to manage the resources in the new account console, allowing access and modification of data the user was not intended to have.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-916</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14389">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-10758 – A vulnerability was found in Keycloak before 11.0.1 where DoS attack is possible...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10758</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10758</guid>
    <pubDate>Wed, 16 Sep 2020 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-10758</strong></p>
  <p>A vulnerability was found in Keycloak before 11.0.1 where DoS attack is possible by sending twenty requests simultaneously to the specified keycloak server, all with a Content-Length header value that exceeds the actual byte count of the request body.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10758">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1714 – A flaw was found in Keycloak before version 11.0.0, where the code base contains...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1714</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1714</guid>
    <pubDate>Wed, 13 May 2020 19:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1714</strong></p>
  <p>A flaw was found in Keycloak before version 11.0.0, where the code base contains usages of ObjectInputStream without type checks. This flaw allows an attacker to inject arbitrarily serialized Java Objects, which would then get deserialized in a privileged context and potentially lead to remote code execution.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1714">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1718 – A flaw was found in the reset credential flow in all Keycloak versions before 8...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1718</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1718</guid>
    <pubDate>Tue, 12 May 2020 21:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1718</strong></p>
  <p>A flaw was found in the reset credential flow in all Keycloak versions before 8.0.0. This flaw allows an attacker to gain unauthorized access to the application.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1718">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2020-1731 – A flaw was found in all versions of the Keycloak operator, before version 8.0.2,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1731</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1731</guid>
    <pubDate>Mon, 02 Mar 2020 17:15:19 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2020-1731</strong></p>
  <p>A flaw was found in all versions of the Keycloak operator, before version 8.0.2,(community only) where the operator generates a random admin password when installing Keycloak, however the password remains the same when deployed to the same OpenShift namespace.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-341</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1731">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-14910 – A vulnerability was found in keycloak 7.x, when keycloak is configured with LDAP...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-14910</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-14910</guid>
    <pubDate>Thu, 05 Dec 2019 15:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-14910</strong></p>
  <p>A vulnerability was found in keycloak 7.x, when keycloak is configured with LDAP user federation and StartTLS is used instead of SSL/TLS from the LDAP server (ldaps), in this case user authentication succeeds even if invalid password has entered.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14910">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-14909 – A vulnerability was found in Keycloak 7.x where the user federation LDAP bind ty...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-14909</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-14909</guid>
    <pubDate>Wed, 04 Dec 2019 15:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-14909</strong></p>
  <p>A vulnerability was found in Keycloak 7.x where the user federation LDAP bind type is none (LDAP anonymous bind), any password, invalid or valid will be accepted.</p>
  <p><strong>CVSS:</strong> 8.3 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14909">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-14832 – A flaw was found in the Keycloak REST API before version 8.0.0 where it would pe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-14832</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-14832</guid>
    <pubDate>Tue, 15 Oct 2019 19:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-14832</strong></p>
  <p>A flaw was found in the Keycloak REST API before version 8.0.0 where it would permit user access from a realm the user was not configured. An authenticated attacker with knowledge of a user id could use this flaw to access unauthorized information or to carry out further attacks.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14832">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-10201 – It was found that Keycloak's SAML broker, versions up to 6.0.1, did not verify m...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10201</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10201</guid>
    <pubDate>Wed, 14 Aug 2019 17:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-10201</strong></p>
  <p>It was found that Keycloak's SAML broker, versions up to 6.0.1, did not verify missing message signatures. If an attacker modifies the SAML Response and removes the <Signature> sections, the message is still accepted, and the message can be modified. An attacker could use this flaw to impersonate other users and gain access to sensitive information.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-592</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10201">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-10199 – It was found that Keycloak's account console, up to 6.0.1, did not perform adequ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10199</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10199</guid>
    <pubDate>Wed, 14 Aug 2019 17:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-10199</strong></p>
  <p>It was found that Keycloak's account console, up to 6.0.1, did not perform adequate header checks in some requests. An attacker could use this flaw to trick an authenticated user into performing operations via request from an untrusted domain.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10199">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-14657 – A flaw was found in Keycloak 4.2.1.Final, 4.3.0.Final. When TOPT enabled, an imp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-14657</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-14657</guid>
    <pubDate>Tue, 13 Nov 2018 19:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-14657</strong></p>
  <p>A flaw was found in Keycloak 4.2.1.Final, 4.3.0.Final. When TOPT enabled, an improper implementation of the Brute Force detection algorithm will not enforce its protection measures.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-307</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-14657">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-2646 – It was found that when Keycloak before 2.5.5 receives a Logout request with a Ex...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-2646</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-2646</guid>
    <pubDate>Fri, 27 Jul 2018 18:29:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-2646</strong></p>
  <p>It was found that when Keycloak before 2.5.5 receives a Logout request with a Extensions in the middle of the request, the SAMLSloRequestParser.parse() method ends in a infinite loop. An attacker could use this flaw to conduct denial of service attacks.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-835</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-2646">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12161 – It was found that keycloak before 3.4.2 final would permit misuse of a client-si...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12161</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12161</guid>
    <pubDate>Wed, 21 Feb 2018 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12161</strong></p>
  <p>It was found that keycloak before 3.4.2 final would permit misuse of a client-side /etc/hosts entry to spoof a URL in a password reset request. An attacker could use this flaw to craft a malicious password reset request and gain a valid reset token, leading to information disclosure or further attacks.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-602</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12161">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-15112 – keycloak-httpd-client-install versions before 0.8 allow users to insecurely pass...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-15112</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-15112</guid>
    <pubDate>Sat, 20 Jan 2018 00:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-15112</strong></p>
  <p>keycloak-httpd-client-install versions before 0.8 allow users to insecurely pass password through command line, leaking it via command history and process info to other local users.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-15112">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-3651 – JBoss KeyCloak before 1.0.3.Final allows remote attackers to cause a denial of s...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-3651</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-3651</guid>
    <pubDate>Fri, 29 Dec 2017 15:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-3651</strong></p>
  <p>JBoss KeyCloak before 1.0.3.Final allows remote attackers to cause a denial of service (resource consumption) via a large value in the size parameter to auth/qrcode, related to QR code generation.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-3651">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12160 – It was found that Keycloak oauth would permit an authenticated resource to obtai...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12160</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12160</guid>
    <pubDate>Thu, 26 Oct 2017 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12160</strong></p>
  <p>It was found that Keycloak oauth would permit an authenticated resource to obtain an access/refresh token pair from the authentication server, permitting indefinite usage in the case of permission revocation. An attacker on an already compromised resource could use this flaw to grant himself continued permissions and possibly conduct further attacks.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12160">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12159 – It was found that the cookie used for CSRF prevention in Keycloak was not unique...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12159</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12159</guid>
    <pubDate>Thu, 26 Oct 2017 17:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12159</strong></p>
  <p>It was found that the cookie used for CSRF prevention in Keycloak was not unique to each session. An attacker could use this flaw to gain access to an authenticated user session, leading to possible information disclosure or further attacks.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-613</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12159">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-3709 – The org.keycloak.services.resources.SocialResource.callback method in JBoss KeyC...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-3709</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-3709</guid>
    <pubDate>Wed, 18 Oct 2017 14:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-3709</strong></p>
  <p>The org.keycloak.services.resources.SocialResource.callback method in JBoss KeyCloak before 1.0.3.Final allows remote attackers to conduct cross-site request forgery (CSRF) attacks by leveraging lack of CSRF protection.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-3709">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-7474 – It was found that the Keycloak Node.js adapter 2.5 - 3.0 did not handle invalid ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-7474</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-7474</guid>
    <pubDate>Fri, 12 May 2017 19:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-7474</strong></p>
  <p>It was found that the Keycloak Node.js adapter 2.5 - 3.0 did not handle invalid tokens correctly.  An attacker could use this flaw to bypass authentication and gain access to restricted information, or to possibly conduct further attacks.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-253</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-7474">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
