📦 Build Of Keycloak

by Redhat

🔍 What is Build Of Keycloak?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-7341

HIGH CVSS 7.1 Sep 9, 2024

This CVE describes a session fixation vulnerability in Keycloak's SAML adapters where session IDs aren't regenerated during login, even when configured to do so. Attackers who hijack a session before ...

CVE-2024-1132

HIGH CVSS 8.1 Apr 17, 2024

This vulnerability in Keycloak allows attackers to bypass URL validation in redirects when clients use wildcards in Valid Redirect URIs. Attackers can construct malicious requests to access unauthoriz...

CVE-2025-7784

MEDIUM CVSS 6.5 Jul 18, 2025

A privilege escalation vulnerability in Keycloak allows administrative users with the manage-users role to elevate their privileges to realm-admin when Fine-Grained Admin Permissions (FGAPv2) are enab...

CVE-2024-7260

MEDIUM CVSS 6.1 Sep 9, 2024

CVE-2024-7260 is an open redirect vulnerability in Keycloak that allows attackers to craft malicious URLs that appear to be legitimate Keycloak pages but redirect users to malicious websites. This aff...