| ベンダー | プロダクト | Version Range | ステータス |
|---|---|---|---|
| Red Hat | Red Hat Build of Keycloak | any | affected |
any | affected | ||
any | affected | ||
| Red Hat | Red Hat Data Grid 8 | any | unaffected |
| Red Hat | Red Hat JBoss Enterprise Application Platform Expansion Pack | any | unaffected |
| Red Hat | Red Hat Single Sign-On 7 | any | unaffected |
高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| ベンダー | プロダクト | 影響を受けるバージョン | CPE | 購読 |
|---|---|---|---|---|
| Red Hat | Red Hat Build of Keycloak | - | cpe:/a:redhat:build_keycloak: | |
| Red Hat | Red Hat Build of Keycloak | - | cpe:/a:redhat:build_keycloak: | |
| Red Hat | Red Hat Build of Keycloak | - | cpe:/a:redhat:build_keycloak: | |
| Red Hat | Red Hat Data Grid 8 | - | cpe:/a:redhat:jboss_data_grid:8 | |
| Red Hat | Red Hat JBoss Enterprise Application Platform Expansion Pack | - | cpe:/a:redhat:jbosseapxp | |
| Red Hat | Red Hat Single Sign-On 7 | - | cpe:/a:redhat:red_hat_single_sign_on:7 |
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2026-10079 | 8.5 HIGH | Stackrox: stackrox: deploy-time policy enforcement and visibility bypass via label injecti |
| CVE-2026-18141 | 8.2 HIGH | Aap-gateway: aap-gateway: authentication bypass in event-driven ansible via forged http he |
| CVE-2026-15722 | 7.5 HIGH | 389-ds-base: 389-ds-base: pre-authentication stack buffer overflow in get_ruvelement_from_ |
| CVE-2026-11770 | 7.5 HIGH | 389-ds-base: 389-ds-base: pre-auth ldap filter injection in cleanallruv status check |
| CVE-2026-18215 | 6.8 MEDIUM | Keycloak-services: keycloak-services: microsoft external access-token exchange bypasses co |
| CVE-2026-18214 | 6.8 MEDIUM | Keycloak-services: keycloak-services: google external access-token exchange bypasses hoste |
| CVE-2026-18208 | 6.5 MEDIUM | Keycloak-services: keycloak-services: inactive out-of-audience token introspection leaks s |
| CVE-2026-18203 | 6.5 MEDIUM | Keycloak-services: keycloak-services: group policy extendchildren matches sibling group pa |
| CVE-2026-16105 | 4.9 MEDIUM | Keycloak-services: keycloak-services: missing per-role authorization on rolecontainerresou |
| CVE-2026-18218 | 4.2 MEDIUM | Keycloak-services: keycloak-services: client not-before revocation ignored when realm not- |
| CVE-2026-18206 | 3.7 LOW | Keycloak-services: keycloak-services: client policy source-host wildcard domain matching b |
| CVE-2026-18217 | 3.4 LOW | Keycloak-services: keycloak-services: saml http-redirect binding response preserves query |
| CVE-2026-18209 | 3.4 LOW | Keycloak-services: keycloak-services: oidc redirect_uri fragment bypass in http parameter |
まだコメントはありません