User-Managed Access Flaw in Keycloak by Red Hat
CVE-2019-10169
6.6MEDIUM
What is CVE-2019-10169?
A vulnerability in Keycloak's user-managed access interface allows attackers with UMA permissions to input a malicious script in the policy configuration. This vulnerability can be exploited to execute arbitrary code with the same permissions as the user running the application, potentially compromising system security and integrity.
Affected Version(s)
keycloak 8.0.0
