Keycloak(一种开源的身份和访问管理解决方案)的 Admin REST API 中发现存在一个漏洞。该问题出现在群组成员管理端点中,系统在允许将用户添加到某个组之前,未检查该组是否授予了管理员权限。这可能导致拥有受限权限的委托管理员将自己添加到具有更高权限的组中,从而可能获得对整个领域(Realm)的完全控制权。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Build of Keycloak | - |
cpe:/a:redhat:build_keycloak:
|
|
| Red Hat | Red Hat Build of Keycloak | - |
cpe:/a:redhat:build_keycloak:
|
|
| Red Hat | Red Hat Build of Keycloak | - |
cpe:/a:redhat:build_keycloak:
|
|
| Red Hat | Red Hat Single Sign-On 7 | - |
cpe:/a:redhat:red_hat_single_sign_on:7
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-94001 | 6.5 MEDIUM | Keycloak-services: keycloak-services: admin credential delete bypasses denied reset-passwo |
| CVE-2026-93999 | 4.2 MEDIUM | Keycloak-services: keycloak-services: token refresh continues issuing tokens for disabled |
No comments yet