Количество 4
Количество 4

CVE-2025-2559
A flaw was found in Keycloak. When the configuration uses JWT tokens for authentication, the tokens are cached until expiration. If a client uses JWT tokens with an excessively long expiration time, for example, 24 or 48 hours, the cache can grow indefinitely, leading to an OutOfMemoryError. This issue could result in a denial of service condition, preventing legitimate users from accessing the system.

CVE-2025-2559
A flaw was found in Keycloak. When the configuration uses JWT tokens for authentication, the tokens are cached until expiration. If a client uses JWT tokens with an excessively long expiration time, for example, 24 or 48 hours, the cache can grow indefinitely, leading to an OutOfMemoryError. This issue could result in a denial of service condition, preventing legitimate users from accessing the system.
CVE-2025-2559
A flaw was found in Keycloak. When the configuration uses JWT tokens f ...
GHSA-2935-2wfm-hhpv
Keycloak Denial of Service (DoS) Vulnerability via JWT Token Cache
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2025-2559 A flaw was found in Keycloak. When the configuration uses JWT tokens for authentication, the tokens are cached until expiration. If a client uses JWT tokens with an excessively long expiration time, for example, 24 or 48 hours, the cache can grow indefinitely, leading to an OutOfMemoryError. This issue could result in a denial of service condition, preventing legitimate users from accessing the system. | CVSS3: 4.9 | 0% Низкий | 5 месяцев назад |
![]() | CVE-2025-2559 A flaw was found in Keycloak. When the configuration uses JWT tokens for authentication, the tokens are cached until expiration. If a client uses JWT tokens with an excessively long expiration time, for example, 24 or 48 hours, the cache can grow indefinitely, leading to an OutOfMemoryError. This issue could result in a denial of service condition, preventing legitimate users from accessing the system. | CVSS3: 4.9 | 0% Низкий | 5 месяцев назад |
CVE-2025-2559 A flaw was found in Keycloak. When the configuration uses JWT tokens f ... | CVSS3: 4.9 | 0% Низкий | 5 месяцев назад | |
GHSA-2935-2wfm-hhpv Keycloak Denial of Service (DoS) Vulnerability via JWT Token Cache | CVSS3: 4.9 | 0% Низкий | 5 месяцев назад |
Уязвимостей на страницу