Description
A flaw was found in the Keycloak Node.js Adapter. This flaw allows an attacker to benefit from an Open Redirect vulnerability in the checkSso function.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=2097007
Related Vulnerabilities
CVE-2017-16129 Vulnerability in maven package org.webjars:superagent
CVE-2023-27495 Vulnerability in npm package @fastify/csrf-protection
CVE-2020-27838 Vulnerability in maven package org.keycloak:keycloak-services
CVE-2021-45459 Vulnerability in npm package node-windows
CVE-2023-36542 Vulnerability in maven package org.apache.nifi:nifi-dbcp-service