Keycloak, an open-source identity... CVE-2022-4361

- AV AC AU C I A
发布: 2023-07-07
修订: 2024-11-21

Keycloak, an open-source identity and access management solution, has a cross-site scripting (XSS) vulnerability in the SAML or OIDC providers. The vulnerability can allow an attacker to execute malicious scripts by setting the AssertionConsumerServiceURL value or the redirect_uri.

0%
暂无可用Exp或PoC
当前有12条受影响产品信息