Security Advisory

CVE-2020-10776

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-11-17 01:26:24
Last updated 2024-08-04 11:14:15
Assigner redhat
State PUBLISHED

Description

A flaw was found in Keycloak before version 12.0.0, where it is possible to add unsafe schemes for the redirect_uri parameter. This flaw allows an attacker to perform a Cross-site scripting attack.