📦 Keyrock

by Fiware

🔍 What is Keyrock?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-42166

CRITICAL CVSS 9.1 Aug 12, 2024

This vulnerability allows authenticated users with application creation permissions to execute arbitrary operating system commands by creating applications with malicious names in FIWARE Keyrock. The ...

CVE-2024-42163

HIGH CVSS 8.3 Aug 12, 2024

This vulnerability in FIWARE Keyrock allows attackers to predict password reset tokens due to insufficient randomness. Attackers can take over any user account by generating valid password reset links...

CVE-2024-42165

MEDIUM CVSS 6.3 Aug 12, 2024

This vulnerability in FIWARE Keyrock allows attackers to predict activation tokens due to insufficient randomness, enabling unauthorized account activation for any user. Systems running FIWARE Keyrock...