Security Advisory

CVE-2025-5416

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-06-20 16:04:05
Last updated 2025-11-21 07:36:39
Assigner redhat
State PUBLISHED

Description

A vulnerability has been identified in Keycloak that could lead to unauthorized information disclosure. While it requires an already authenticated user, the /admin/serverinfo endpoint can inadvertently provide sensitive environment information.