Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-15573

Опубликовано: 05 авг. 2026
Источник: redhat
CVSS3: 8.1
EPSS Низкий

Описание

A flaw was found in Keycloak's Authorization Services. The component responsible for matching request paths to security policies (PathMatcher) does not properly normalize URIs before comparison. By adding extra characters like a trailing slash or matrix parameters to a URL, an attacker can trick the system into applying a less restrictive security policy than intended. This allows an authenticated user to access administrative or restricted areas they should not have permission to see.

Отчет

Red Hat Product Security has rated this vulnerability as having a security impact of Important. This issue allows authenticated users to bypass fine-grained authorization controls by exploiting a lack of URI normalization in the PathMatcher utility. While authentication is required, the ability to bypass explicit "Deny" policies and access restricted resources poses a significant risk to the confidentiality and integrity of the protected system.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Data Grid 8keycloak-servicesAffected
Red Hat JBoss Enterprise Application Platform Expansion Packkeycloak-servicesAffected
Red Hat Single Sign-On 7keycloak-servicesFix deferred
Red Hat build of Keycloak 26.4rhbk/keycloak-operator-bundleFixedRHSA-2026:5084705.08.2026
Red Hat build of Keycloak 26.4rhbk/keycloak-rhel9FixedRHSA-2026:5084705.08.2026
Red Hat build of Keycloak 26.4rhbk/keycloak-rhel9-operatorFixedRHSA-2026:5084705.08.2026
Red Hat build of Keycloak 26.4.14keycloak-servicesFixedRHSA-2026:5084605.08.2026
Red Hat build of Keycloak 26.4.14rhbk-openshift-rhel9/rhbk-openshift-rhel9FixedRHSA-2026:5084605.08.2026
Red Hat build of Keycloak 26.6rhbk/keycloak-operator-bundleFixedRHSA-2026:5084905.08.2026
Red Hat build of Keycloak 26.6rhbk/keycloak-rhel9FixedRHSA-2026:5084905.08.2026

Показывать по

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=2499593keycloak-services: keycloak-services: Authorization bypass via unnormalized URI matching in PathMatcher

EPSS

Процентиль: 22%
0.0029
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
nvd
13 дней назад

A flaw was found in Keycloak's Authorization Services. The component responsible for matching request paths to security policies (PathMatcher) does not properly normalize URIs before comparison. By adding extra characters like a trailing slash or matrix parameters to a URL, an attacker can trick the system into applying a less restrictive security policy than intended. This allows an authenticated user to access administrative or restricted areas they should not have permission to see.

CVSS3: 8.1
debian
13 дней назад

A flaw was found in Keycloak's Authorization Services. The component r ...

CVSS3: 8.1
github
13 дней назад

A flaw was found in Keycloak's Authorization Services. The component responsible for matching request paths to security policies (PathMatcher) does not properly normalize URIs before comparison. By adding extra characters like a trailing slash or matrix parameters to a URL, an attacker can trick the system into applying a less restrictive security policy than intended. This allows an authenticated user to access administrative or restricted areas they should not have permission to see.

EPSS

Процентиль: 22%
0.0029
Низкий

8.1 High

CVSS3