Keycloak是Keycloak组织开源的一种身份和访问管理解决方案。 Keycloak存在授权问题漏洞,该漏洞源于keycloak-services组件中的full-scope-disabled client-policy executor仅验证请求中显式提供的fullScopeAllowed字段,攻击者可省略该字段绕过安全策略,导致创建具有完整范围访问权限的客户端,从而获取未授权角色映射的令牌。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat build of Keycloak 26.6 | 26.6.7-3< * |
unaffected |
26.6-20< * |
unaffected | ||
26.6-20< * |
unaffected | ||
| Red Hat | Red Hat build of Keycloak 26.6.7 | any |
unaffected |
any |
unaffected | ||
any |
unaffected | ||
| Red Hat | Red Hat Data Grid 8 | any |
unaffected |
| Red Hat | Red Hat JBoss Enterprise Application Platform Expansion Pack | any |
unaffected |
| Red Hat | Red Hat Single Sign-On 7 | any |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat build of Keycloak 26.6 | 26.6.7-3 ~ * |
cpe:/a:redhat:build_keycloak:26.6::el9
|
|
| Red Hat | Red Hat build of Keycloak 26.6 | 26.6-20 ~ * |
cpe:/a:redhat:build_keycloak:26.6::el9
|
|
| Red Hat | Red Hat build of Keycloak 26.6 | 26.6-20 ~ * |
cpe:/a:redhat:build_keycloak:26.6::el9
|
|
| Red Hat | Red Hat build of Keycloak 26.6.7 | - |
cpe:/a:redhat:build_keycloak:26.6::el9
|
|
| Red Hat | Red Hat build of Keycloak 26.6.7 | - |
cpe:/a:redhat:build_keycloak:26.6::el9
|
|
| Red Hat | Red Hat build of Keycloak 26.6.7 | - |
cpe:/a:redhat:build_keycloak:26.6::el9
|
|
| Red Hat | Red Hat Data Grid 8 | - |
cpe:/a:redhat:jboss_data_grid:8
|
|
| Red Hat | Red Hat JBoss Enterprise Application Platform Expansion Pack | - |
cpe:/a:redhat:jbosseapxp
|
|
| Red Hat | Red Hat Single Sign-On 7 | - |
cpe:/a:redhat:red_hat_single_sign_on:7
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-18571 | 6.6 MEDIUM | Keycloak-services: keycloak-services: fgap v2 group assignment bypass during user creation |
| CVE-2026-18573 | 6.5 MEDIUM | Keycloak-services: keycloak-services: client access-type policy condition bypass during cl |
| CVE-2026-18572 | 6.5 MEDIUM | Keycloak-services: keycloak-services: uma claim token can override authorization time-poli |
No comments yet