Red Hat Keycloak Vulnerabilities
Red%20hat Keycloak vulnerabilities.
Vulnerability Published:
🗓️ Published
- Anytime
Sort By:
🗓️ Published Date
- Descending
Security Flaw in Keycloak's CIBA Feature Affects Internal Service Requests
CVE-2026-1518Red HatRed Hat Build Of Keycloak2.7LOWPrivilege Escalation Vulnerability in Keycloak Admin API by Red Hat
CVE-2025-13881Red HatRed Hat Build Of Keycloak2.7LOWDenial-of-Service Vulnerability in Undertow by Red Hat
CVE-2024-4027Red HatOpenshift Serverless7.5HIGHSAML Brokering Flaw in Keycloak Affects Session Validity
CVE-2026-1190Red HatRed Hat Build Of Keycloak3.1LOWAccess Control Flaw in Keycloak Admin REST API by Red Hat
CVE-2025-14083Red HatRed Hat Build Of Keycloak2.7LOWBusiness Logic Vulnerability in Keycloak's Token Exchange Component
CVE-2025-14559Red HatRed Hat Build Of Keycloak6.5MEDIUMToken Management Flaw in Keycloak Server by Red Hat
CVE-2026-1035Red HatRed Hat Build Of Keycloak3.1LOWArbitrary Jwks_uri Vulnerability in Keycloak's OpenID Connect Dynamic Client Registration
CVE-2026-1180Red HatRed Hat Build Of Keycloak5.8MEDIUMImproper Input Validation in Keycloak by Red Hat
CVE-2026-0976Red HatRed Hat Build Of Keycloak3.7LOWVulnerability in Keycloak's Authorization Header Parser Affects Authentication Security
CVE-2026-0707Red HatRed Hat Build Of Keycloak5.3MEDIUMBroken Access Control Vulnerability in Keycloak Admin API
CVE-2025-14777Red HatRed Hat Build Of Keycloak6MEDIUMInformation Disclosure Vulnerability in Keycloak Admin REST API by Red Hat
CVE-2025-14082Red HatRed Hat Build Of Keycloak2.7LOWRemote Denial of Service Vulnerability in Undertow by Red Hat
CVE-2024-3884Red HatRed Hat Jboss Enterpri...7.5HIGHInformation Disclosure Vulnerability in Keycloak by Red Hat
CVE-2025-5416Red HatRed Hat Build Of Keycloak2.7LOWKeycloak Vulnerability Affects Sensitive Data
CVE-2024-10451Red HatRed Hat Build Of Keycl...5.9MEDIUMStack Overflow Exception in XNIO NotifierState Could Lead to Denial of Service
CVE-2023-5685Red HatRed Hat Build Of Apach...7.5HIGHKeycloak: redirect_uri validation bypass
CVE-2023-6291Red HatRed Hat Build Of Keycl...7.1HIGHClient access via device auth request spoof
CVE-2023-2585Red Hatkeycloak8.1HIGHKeycloak: open redirect via "form_post.jwt" jarm response mode
CVE-2023-6927Red HatRed Hat Build Of Keycl...4.6MEDIUMKeycloak: reflected xss via wildcard in oidc redirect_uri
CVE-2023-6134Red HatRed Hat Build Of Keycl...4.6MEDIUMKeycloak: offline session token dos
CVE-2023-6563Red HatRed Hat Single Sign-on...7.7HIGHOauth client impersonation
CVE-2023-2422Red Hatkeycloak7.1HIGHPlaintext storage of user password
CVE-2023-4918Red Hatkeycloak8.8HIGHPath Traversal Vulnerability in Keycloak by Red Hat
CVE-2020-14366Red HatKeycloak6.8MEDIUMTLS Hostname Verification Flaw in Keycloak by Red Hat
CVE-2020-1758Red HatKeycloak5.3MEDIUM