Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Red Hat Build of Keycloak — Vulnerabilities & Security Advisories 39

All 39 CVE vulnerabilities found in Red Hat Build of Keycloak, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities associated with the Red Hat Build of Keycloak, a Java-based open source identity and access management solution, focusing primarily on common weakness classes such as cross-site scripting, remote code execution, and broken access control. The collection covers advisories published by Red Hat and related upstream projects, spanning the product's supported release history from initial deployment through the most recent security updates. Visitors can use this resource to track the vendor's published advisories, analyze the prevalence of specific weakness types over time, and review the complete vulnerability history for the product. By examining this data, security teams can identify recurring risk patterns, prioritize remediation efforts, and verify compliance with organizational security policies. The aggregation provides a consolidated view of known defects, enabling users to correlate individual CVE entries with broader trend analysis.

Vendor: Red Hat

CVE ID Title CVSS Severity Published
CVE-2026-101333 Keycloak-services: keycloak-services: unbounded metric series creation via idp tag on broker login endpoint CWE-770 3.7 Low 2026-09-28
CVE-2026-96448 Keycloak-services: keycloak-services: fgap v2 composite-blind role mapping allows privilege escalation CWE-285 6.6 Medium 2026-09-25
CVE-2026-97846 Keycloak-services: keycloak-services: standard token exchange v2 bypasses mtls holder-of-key binding CWE-287 6.8 Medium 2026-09-25
CVE-2026-97311 Keycloak-services: keycloak-services: admin rest api role-groups endpoint discloses groups without authorization CWE-862 4.3 Medium 2026-09-24
CVE-2026-97177 Keycloak-services: keycloak-services: generic user update bypasses denied reset-password permission CWE-862 6.6 Medium 2026-09-24
CVE-2026-97176 Keycloak-services: keycloak-services: essential acr requirement silently bypassed via cookie authenticator CWE-862 4.2 Medium 2026-09-24
CVE-2026-96445 Keycloak-services: keycloak-services: conditional otp skip-header policy evaluated against untrusted proxy headers CWE-287 6.8 Medium 2026-09-23
CVE-2026-96446 Keycloak-services: keycloak-services: par single-use bypass via prompt=none silent authentication path CWE-862 4.2 Medium 2026-09-23
CVE-2026-95503 Keycloak-services: keycloak-services: potential kdc spoofing bypass when kerberos password authentication is enabled CWE-347 6.8 Medium 2026-09-22
CVE-2026-94218 Keycloak-services: keycloak-services: 2fa setup enforcement bypass via authentication session restart endpoint CWE-862 3.1 Low 2026-09-21
CVE-2026-94217 Keycloak-services: keycloak-services: uma scope merge across resource owners via resource name collision CWE-862 3.5 Low 2026-09-21
CVE-2026-94215 Keycloak-services: keycloak-services: cross-realm client read/write via request-level cache missing realm ownership check CWE-862 5.5 Medium 2026-09-21
CVE-2026-94213 Keycloak-services: keycloak-services: authorization services policy evaluation endpoint leaks user identity CWE-862 4.9 Medium 2026-09-21
CVE-2026-94001 Keycloak-services: keycloak-services: admin credential delete bypasses denied reset-password permission CWE-862 6.5 Medium 2026-09-19
CVE-2026-94000 Keycloak-services: keycloak-services: delegated admin with manage-users can escalate to realm-admin via group membership CWE-862 6.6 Medium 2026-09-19
CVE-2026-93999 Keycloak-services: keycloak-services: token refresh continues issuing tokens for disabled audience clients CWE-862 4.2 Medium 2026-09-19
CVE-2026-92358 Keycloak-services: keycloak-services: residual cross-browser account-link proof allows silent re-linking CWE-613 6.4 Medium 2026-09-16
CVE-2026-89298 Keycloak-services: keycloak-services: confidential client secret disclosed to view-clients role via client registration get CWE-200 4.9 Medium 2026-09-11
CVE-2026-88770 Keycloak-services: keycloak-services: device authorization grant issues tokens to brute-force-locked accounts CWE-307 6.5 Medium 2026-09-10
CVE-2026-82968 Keycloak-services: keycloak-services: cross-session email verification proof not bound to upstream identity for social providers CWE-639 6.4 Medium 2026-09-02
CVE-2026-19608 Keycloak-services: keycloak-services: name-only group claims let same-name groups satisfy path-specific group policies CWE-285 5.3 Medium 2026-08-18
CVE-2026-18967 Keycloak-services: keycloak-services: saml onetimeuse assertion replay in idp-initiated broker flow CWE-294 6.4 Medium 2026-08-06
CVE-2026-18569 Keycloak-services: keycloak-services: oidc backchannel logout accepts unsigned forged logout tokens CWE-347 3.7 Low 2026-08-04
CVE-2026-18206 Keycloak-services: keycloak-services: client policy source-host wildcard domain matching bypass CWE-20 3.7 Low 2026-07-31
CVE-2026-18203 Keycloak-services: keycloak-services: group policy extendchildren matches sibling group path prefixes CWE-863 6.5 Medium 2026-07-31
CVE-2026-18211 Keycloak-services: keycloak-services: secure-client-uris policy bypass via localhost-prefixed domains CWE-20 4.2 Medium 2026-07-31
CVE-2026-18208 Keycloak-services: keycloak-services: inactive out-of-audience token introspection leaks signed jwt claim CWE-862 6.5 Medium 2026-07-31
CVE-2026-18217 Keycloak-services: keycloak-services: saml http-redirect binding response preserves query string leading to parameter pollution CWE-20 3.4 Low 2026-07-31
CVE-2026-18207 Keycloak-services: keycloak-services: client policy source-group condition bypass via duplicate group name matching CWE-285 6.5 Medium 2026-07-29
CVE-2026-16103 Keycloak-services: keycloak-services: incomplete fix for ciba brute-force lockout bypass at token redemption CWE-305 4.3 Medium 2026-07-17

All 39 known CVE vulnerabilities affecting Red Hat Build of Keycloak with full Chinese analysis, references, and POCs where available.