Vulnerability in Keycloak Core Services Affects Security of Client Configurations
CVE-2026-18211

4.2MEDIUM

What is CVE-2026-18211?

A flaw in the client policy executor of Keycloak core services allows attackers to bypass security measures for client configurations. This component enforces essential requirements, such as the need for encrypted connections for redirect URIs. However, due to an inadequate validation process that solely examines the beginning of a web address, attackers can exploit this weakness using a specially crafted domain name. This vulnerability poses a risk of intercepted sensitive authentication codes, as it may redirect unencrypted connections to malicious domains.

References

CVSS V3.1

Score:
4.2
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Red Hat would like to thank Paul Bottinelli (Trail of Bits) for reporting this issue.
.