Keycloak是Keycloak开源的一种开源身份和访问管理解决方案。 Keycloak存在安全漏洞,该漏洞源于管理员API权限控制不当,可能导致受限管理员检索敏感用户属性。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat build of Keycloak 26.4 | 26.4.9-1 ~ * |
cpe:/a:redhat:build_keycloak:26.4::el9
|
|
| Red Hat | Red Hat build of Keycloak 26.4 | 26.4-11 ~ * |
cpe:/a:redhat:build_keycloak:26.4::el9
|
|
| Red Hat | Red Hat build of Keycloak 26.4 | 26.4-10 ~ * |
cpe:/a:redhat:build_keycloak:26.4::el9
|
|
| Red Hat | Red Hat build of Keycloak 26.4.9 | - |
cpe:/a:redhat:build_keycloak:26.4::el9
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-1761 | 8.6 HIGH | Libsoup: stack-based buffer overflow in libsoup multipart response parsingmultipart http r |
| CVE-2026-1531 | 8.1 HIGH | Foreman-kubevirt: foreman_kubevirt: man-in-the-middle due to insecure default ssl verifica |
| CVE-2026-1530 | 8.1 HIGH | Fog-kubevirt: fog-kubevirt: man-in-the-middle vulnerability due to disabled certificate va |
| CVE-2026-1757 | 6.2 MEDIUM | Libxml2: memory leak leading to local denial of service in xmllint interactive shell |
| CVE-2026-1760 | 5.3 MEDIUM | Libsoup: soupserver: denial of service via http request smuggling |
No comments yet