CVE-2022-1274

Publication date

2023-03-29 00:00:00

Family

redhat

State

PUBLISHED

Description

A flaw was found in Keycloak in the execute-actions-email endpoint. This issue allows arbitrary HTML to be injected into emails sent to Keycloak users and can be misused to perform phishing or other attacks against users.