Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:38470
HistoryDec 14, 2022 - 6:05 a.m.

Path Traversal

2022-12-1406:05:22
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
path traversal
keycloak services
redirect url validation
sensitive information

0.002 Low

EPSS

Percentile

53.0%

org.keycloak:keycloak-services is vulnerable to Path Traversal. The vulnerability is due to improper redirect URL validation, which lets an attacker bypass validation for redirects and access sensitive information on the domain.

0.002 Low

EPSS

Percentile

53.0%