Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-1518

Опубликовано: 28 янв. 2026
Источник: redhat
CVSS3: 2.7
EPSS Низкий

Описание

A flaw was found in Keycloak’s CIBA feature where insufficient validation of client-configured backchannel notification endpoints could allow blind server-side requests to internal services.

Отчет

This LOW impact flaw in Red Hat Build of Keycloak allows a highly privileged attacker to perform blind Server-Side Request Forgery (SSRF). By configuring the CIBA backchannel notification endpoint to an internal URL, an attacker can induce Keycloak to send requests to arbitrary internal services. Exploitation requires administrative access or a valid Initial Access Token to configure client settings.

Меры по смягчению последствий

To mitigate this issue, restrict administrative access to Keycloak instances. Ensure that only trusted and authorized personnel have the necessary privileges to configure client settings, including the backchannel_client_notification_endpoint. This limits the ability of an attacker to manipulate the endpoint for SSRF attacks.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Build of Keycloakrhbk/keycloak-operator-bundleFix deferred
Red Hat Build of Keycloakrhbk/keycloak-rhel9Fix deferred
Red Hat Build of Keycloakrhbk/keycloak-rhel9-operatorFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-918
https://bugzilla.redhat.com/show_bug.cgi?id=2433727keycloak: Blind Server-Side Request Forgery (SSRF) via CIBA Backchannel Notification Endpoint in Keycloak

EPSS

Процентиль: 1%
0.00011
Низкий

2.7 Low

CVSS3

Связанные уязвимости

CVSS3: 2.7
nvd
около 2 месяцев назад

A flaw was found in Keycloak’s CIBA feature where insufficient validation of client-configured backchannel notification endpoints could allow blind server-side requests to internal services.

CVSS3: 2.7
debian
около 2 месяцев назад

A flaw was found in Keycloak\u2019s CIBA feature where insufficient va ...

CVSS3: 2.7
github
около 2 месяцев назад

Keycloak Server-Side Request Forgery (SSRF) vulnerability

EPSS

Процентиль: 1%
0.00011
Низкий

2.7 Low

CVSS3