Lucene search

K
githubGitHub Advisory DatabaseGHSA-3P62-6FJH-3P5H
HistoryJun 30, 2023 - 8:30 p.m.

Keycloak vulnerable to cross-site scripting when validating URI-schemes on SAML and OIDC

2023-06-3020:30:50
CWE-79
CWE-81
GitHub Advisory Database
github.com
52
keycloak
xss
saml
assertionconsumerserviceurl
vulnerability
java
oidc

CVSS3

10

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

EPSS

0.001

Percentile

21.7%

AssertionConsumerServiceURL is a Java implementation for SAML Service Providers (org.keycloak.protocol.saml). Affected versions of this package are vulnerable to Cross-site Scripting (XSS).

AssertionConsumerServiceURL allows XSS when sending a crafted SAML XML request.

Affected configurations

Vulners
Node
org.keycloakkeycloak-servicesRange<21.1.2
VendorProductVersionCPE
org.keycloakkeycloak-services*cpe:2.3:a:org.keycloak:keycloak-services:*:*:*:*:*:*:*:*

CVSS3

10

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

EPSS

0.001

Percentile

21.7%