Skip to main content

Vendor/product archive

redhat / migration_toolkit_for_applications CVEs

Beta · best-effort

3 CVEs tagged to redhat / migration_toolkit_for_applications0 Critical, 3 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2024-1132

Published Apr 17, 2024

A flaw was found in Keycloak, where it does not properly validate URLs included in a redirect. This issue could allow an attacker to construct a malicious request to bypass valida…

CVSS 8.1 · High
evidence mentions
14
Buzz score
33.6

CVE-2023-6291

Published Jan 26, 2024

A flaw was found in the redirect_uri validation logic in Keycloak. This issue may allow a bypass of otherwise explicitly allowed hosts. A successful attack may lead to an access t…

CVSS 7.1 · High

CVE-2022-4492

Published Feb 23, 2023

The undertow client is not checking the server identity presented by the server certificate in https connections. This is a compulsory step (at least it should be performed by def…

CVSS 7.5 · High
Showing 1-3 of 3 CVEsPage 1 of 1