Skip to main content

Vendor/product archive

keycloak / keycloak-nodejs-auth-utils CVEs

Beta · best-effort

1 CVEs tagged to keycloak / keycloak-nodejs-auth-utils1 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2017-7474

Published May 12, 2017

It was found that the Keycloak Node.js adapter 2.5 - 3.0 did not handle invalid tokens correctly. An attacker could use this flaw to bypass authentication and gain access to rest…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1