CVEs Blog | G5 Cyber Security

CVE-2020-1694 – A flaw was found in all versions of Keycloak before 10.0.0, where the Nod

A flaw was found in all versions of Keycloak before 10.0.0, where the NodeJS adapter did not support the verify-token-audience. This flaw results in some users having access to sensitive information outside of their permissions.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1694

Reference (s):

Exit mobile version