Description
A flaw was found in keycloak where keycloak may fail to logout user session if the logout request comes from external SAML identity provider and Principal Type is set to Attribute [Name].
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1941565
Related Vulnerabilities
CVE-2018-15890 Vulnerability in maven package org.ethereum:ethereumj-core
CVE-2020-24750 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2020-26291 Vulnerability in npm package urijs
CVE-2021-21368 Vulnerability in maven package org.webjars.npm:msgpack5
CVE-2014-3607 Vulnerability in maven package edu.vt.middleware:vt-ldap