Lucene search

K
osvGoogleOSV:GHSA-8XJ2-47XW-Q78C
HistoryMay 24, 2022 - 5:17 p.m.

Keycloak Insufficient Session Expiry

2022-05-2417:17:37
Google
osv.dev
5

6.1 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

22.9%

A flaw was found in Keycloak in versions before 9.0.2. This flaw allows a malicious user that is currently logged in, to see the personal information of a previously logged out user in the account manager section.

6.1 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

22.9%