CVEs Blog | G5 Cyber Security

CVE-2020-1727 – A vulnerability was found in Keycloak before 9.0.2, where every Authoriza

A vulnerability was found in Keycloak before 9.0.2, where every Authorization URL that points to an IDP server lacks proper input validation as it allows a wide range of characters. This flaw allows a malicious to craft deep links that introduce further attack scenarios on affected clients.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-1727

Reference (s):

Exit mobile version