Lucene search

K
osvGoogleOSV:GHSA-8HC5-RMGF-QX6P
HistoryNov 29, 2023 - 9:33 p.m.

Keycloak vulnerable to LDAP Injection on UsernameForm Login

2023-11-2921:33:07
Google
osv.dev
13
keycloak
ldap
injection
vulnerability
usernameform
login

AI Score

6.9

Confidence

Low

A flaw was found in the Keycloak package. This flaw allows an attacker to benefit from an LDAP query and access existing usernames in the server.

AI Score

6.9

Confidence

Low

Related for OSV:GHSA-8HC5-RMGF-QX6P