Описание
A log injection flaw was found in Keycloak. A text string may be injected through the authentication form when using the WebAuthn authentication mode. This issue may have a minor impact to the logs integrity.
Ссылки
EPSS
5.3 Medium
CVSS3
Дефекты
Связанные уязвимости
A log injection flaw was found in Keycloak. A text string may be injected through the authentication form when using the WebAuthn authentication mode. This issue may have a minor impact to the logs integrity.
A log injection flaw was found in Keycloak. A text string may be injec ...
Keycloak vulnerable to log Injection during WebAuthn authentication or registration
Уязвимость механизма аутентификации WebAuthn программного средства для управления идентификацией и доступом Keycloak, позволяющая нарушителю оказать влияние на целостность защищаемой информации
EPSS
5.3 Medium
CVSS3