CVE-2025-11419
EUVD-2025-3635623.12.2025, 21:15
A flaw was found in Keycloak. This vulnerability allows an unauthenticated remote attacker to cause a denial of service (DoS) by repeatedly initiating TLS 1.2 client-initiated renegotiation requests to exhaust server CPU resources, making the service unavailable.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
References