Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-08727
HistoryDec 21, 2021 - 12:00 a.m.

Keycloak Access Control Error Vulnerability (CNVD-2022-08727)

2021-12-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
15
red hat
keycloak
security flaw
unprivileged users
user creation
authentication
management capabilities
modern applications

EPSS

0.005

Percentile

76.0%

A security vulnerability exists in Red Hat Keycloak, a suite of software from Red Hat that provides authentication and management capabilities for modern applications and services. keycloak has a security flaw that stems from incorrect authorization of Keycloak allowing unprivileged users to create other users. No details of the vulnerability are currently available.

EPSS

0.005

Percentile

76.0%