Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vf3w-mcmx-rx83

Опубликовано: 20 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 2.7

Описание

A vulnerability has been identified in Keycloak that could lead to unauthorized information disclosure. While it requires an already authenticated user, the /admin/serverinfo endpoint can inadvertently provide sensitive environment information.

A vulnerability has been identified in Keycloak that could lead to unauthorized information disclosure. While it requires an already authenticated user, the /admin/serverinfo endpoint can inadvertently provide sensitive environment information.

EPSS

Процентиль: 9%
0.00031
Низкий

2.7 Low

CVSS3

Дефекты

CWE-497

Связанные уязвимости

CVSS3: 2.7
redhat
6 месяцев назад

A vulnerability has been identified in Keycloak that could lead to unauthorized information disclosure. While it requires an already authenticated user, the /admin/serverinfo endpoint can inadvertently provide sensitive environment information.

CVSS3: 2.7
nvd
6 месяцев назад

A vulnerability has been identified in Keycloak that could lead to unauthorized information disclosure. While it requires an already authenticated user, the /admin/serverinfo endpoint can inadvertently provide sensitive environment information.

CVSS3: 2.7
debian
6 месяцев назад

A vulnerability has been identified in Keycloak that could lead to una ...

EPSS

Процентиль: 9%
0.00031
Низкий

2.7 Low

CVSS3

Дефекты

CWE-497