CVE detail
CVE-2026-4634
A flaw was found in Keycloak. An unauthenticated attacker can exploit this vulnerability by sending a specially crafted POST request with an excessively long scope parameter to the OpenID Connect (OIDC) token endpoint. This leads to high resource consumption and prolonged processing times, ultimately resulting in a Denial of Service (DoS) for the Keycloak server.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 20.8 · diversity 11.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
7 source links · newest first
- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-4634.jsonsecurity.access.redhat.com
No excerpt available.
Vendor Advisorysecurity.access.redhat.comApr 2, 2026, 1:16 PM - https://bugzilla.redhat.com/show_bug.cgi?id=2450250bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comApr 2, 2026, 1:16 PM - https://access.redhat.com/security/cve/CVE-2026-4634access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 2, 2026, 1:16 PM - https://access.redhat.com/errata/RHSA-2026:6478access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 2, 2026, 1:16 PM - https://access.redhat.com/errata/RHSA-2026:6477access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 2, 2026, 1:16 PM - https://access.redhat.com/errata/RHSA-2026:6476access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 2, 2026, 1:16 PM - https://access.redhat.com/errata/RHSA-2026:6475access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 2, 2026, 1:16 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-48779CVSS 7.5 · High
ws is an open source WebSocket client and server for Node.js. All versions from 1.1.0 up to (but not including) 5.2.5, from 6.0.0 up to 6.2.4, from 7.0.0 up to 7.5.11, and from 8.…
- CVE-2026-44390CVSS 6.9 · Medium
NLnet Labs Unbound up to and including version 1.25.0 has a vulnerability when handling replies with very large RRsets that Unbound needs to perform name compression for. Maliciou…
- CVE-2026-41292CVSS 6.6 · Medium
NLnet Labs Unbound up to and including version 1.25.0 is vulnerable to a degradation of service attack related to parsing long lists of incoming EDNS options. An adversary sending…
- CVE-2026-22263CVSS 5.3 · Medium
Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and prior to version 8.0.3, inefficiency in http1 headers parsing can lead to slowdown over multiple packe…
- CVE-2026-22261CVSS 3.7 · Low
Suricata is a network IDS, IPS and NSM engine. Prior to versions 8.0.3 and 7.0.14, various inefficiencies in xff handling, especially for alerts not triggered in a tx, can lead to…
- CVE-2025-67419CVSS 7.5 · High
A Denial of Service (DoS) vulnerability in evershop 2.1.0 and prior allows unauthenticated attackers to exhaust the application server's resources via the "GET /images" API. The a…