Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5vmc-qhfj-qxc3

Опубликовано: 02 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.6

Описание

A flaw was found in the user creation component of Keycloak when Fine-Grained Admin Permissions V2 (FGAP V2) is enabled. This issue allows a sub-administrator with permission to create users to add those users to any group, even groups the sub-administrator is not authorized to manage. This could lead to unauthorized access to sensitive information or elevated privileges for the newly created users.

A flaw was found in the user creation component of Keycloak when Fine-Grained Admin Permissions V2 (FGAP V2) is enabled. This issue allows a sub-administrator with permission to create users to add those users to any group, even groups the sub-administrator is not authorized to manage. This could lead to unauthorized access to sensitive information or elevated privileges for the newly created users.

EPSS

Процентиль: 16%
0.00245
Низкий

6.6 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 6.6
redhat
18 дней назад

A flaw was found in the user creation component of Keycloak when Fine-Grained Admin Permissions V2 (FGAP V2) is enabled. This issue allows a sub-administrator with permission to create users to add those users to any group, even groups the sub-administrator is not authorized to manage. This could lead to unauthorized access to sensitive information or elevated privileges for the newly created users.

CVSS3: 6.6
nvd
15 дней назад

A flaw was found in the user creation component of Keycloak when Fine-Grained Admin Permissions V2 (FGAP V2) is enabled. This issue allows a sub-administrator with permission to create users to add those users to any group, even groups the sub-administrator is not authorized to manage. This could lead to unauthorized access to sensitive information or elevated privileges for the newly created users.

CVSS3: 6.6
debian
15 дней назад

A flaw was found in the user creation component of Keycloak when Fine- ...

EPSS

Процентиль: 16%
0.00245
Низкий

6.6 Medium

CVSS3

Дефекты

CWE-862