CVE-2024-1132
Published Apr 17, 2024A flaw was found in Keycloak, where it does not properly validate URLs included in a redirect. This issue could allow an attacker to construct a malicious request to bypass valida…
Vendor/product archive
3 CVEs tagged to redhat / migration_toolkit_for_runtimes — 0 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.
A flaw was found in Keycloak, where it does not properly validate URLs included in a redirect. This issue could allow an attacker to construct a malicious request to bypass valida…
A flaw was found in Keycloak. This flaw depends on a non-default configuration "Revalidate Client Certificate" to be enabled and the reverse proxy is not validating the certificat…
The undertow client is not checking the server identity presented by the server certificate in https connections. This is a compulsory step (at least it should be performed by def…