CVE-2022-1438
20.09.2023, 14:15
A flaw was found in Keycloak. Under specific circumstances, HTML entities are not sanitized during user impersonation, resulting in a Cross-site scripting (XSS) vulnerability.
Vendor | Product | Version |
---|---|---|
redhat | keycloak | - |
𝑥
= Vulnerable software versions
References