A flaw was found in Keycloaks OpenID... CVE-2023-0264

- AV AC AU C I A
发布: 2023-08-04
修订: 2023-08-14

A flaw was found in Keycloaks OpenID Connect user authentication, which may incorrectly authenticate requests. An authenticated attacker who could obtain information from a user request within the same realm could use that data to impersonate the victim and generate new session tokens. This issue could impact confidentiality, integrity, and availability.

0%
暂无可用Exp或PoC
当前有12条受影响产品信息