Description
A flaw was found in the reset credential flow in all Keycloak versions before 8.0.0. This flaw allows an attacker to gain unauthorized access to the application.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1718
Related Vulnerabilities
CVE-2023-42276 Vulnerability in maven package cn.hutool:hutool-json
CVE-2021-26920 Vulnerability in maven package org.apache.druid:druid-core
CVE-2023-2512 Vulnerability in npm package workerd
CVE-2022-22984 Vulnerability in npm package @snyk/snyk-cocoapods-plugin
CVE-2023-6393 Vulnerability in maven package io.quarkus:quarkus-cache