CVE-2017-7474
Published May 12, 2017It was found that the Keycloak Node.js adapter 2.5 - 3.0 did not handle invalid tokens correctly. An attacker could use this flaw to bypass authentication and gain access to rest…
Vendor/product archive
1 CVEs tagged to keycloak / keycloak-nodejs-auth-utils — 1 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.
It was found that the Keycloak Node.js adapter 2.5 - 3.0 did not handle invalid tokens correctly. An attacker could use this flaw to bypass authentication and gain access to rest…