Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fvjx-r757-3r6r

Опубликовано: 29 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

Keycloak provides a way to manage identity providers and organizations through its administrative API. A flaw was discovered where an administrator with permission to manage identity providers could link a new provider to an organization without having the required permissions to manage that organization. This could allow an unauthorized administrator to influence how users log into specific organizations.

Keycloak provides a way to manage identity providers and organizations through its administrative API. A flaw was discovered where an administrator with permission to manage identity providers could link a new provider to an organization without having the required permissions to manage that organization. This could allow an unauthorized administrator to influence how users log into specific organizations.

EPSS

Процентиль: 21%
0.00285
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 5.5
redhat
20 дней назад

Keycloak provides a way to manage identity providers and organizations through its administrative API. A flaw was discovered where an administrator with permission to manage identity providers could link a new provider to an organization without having the required permissions to manage that organization. This could allow an unauthorized administrator to influence how users log into specific organizations.

CVSS3: 5.5
nvd
19 дней назад

Keycloak provides a way to manage identity providers and organizations through its administrative API. A flaw was discovered where an administrator with permission to manage identity providers could link a new provider to an organization without having the required permissions to manage that organization. This could allow an unauthorized administrator to influence how users log into specific organizations.

CVSS3: 5.5
debian
19 дней назад

Keycloak provides a way to manage identity providers and organizations ...

EPSS

Процентиль: 21%
0.00285
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-862