CVE-2020-10776
17.11.2020, 02:15
A flaw was found in Keycloak before version 12.0.0, where it is possible to add unsafe schemes for the redirect_uri parameter. This flaw allows an attacker to perform a Cross-site scripting attack.
Vendor | Product | Version |
---|---|---|
redhat | keycloak | 𝑥 < 12.0.0 |
𝑥
= Vulnerable software versions