Description
Keycloak is an open source identity and access management solution.
Acunetix determined that it was possible to access a 'client secret' without authentication.
Remediation
Upgrade to the latest version of KeyCloak
References
Related Vulnerabilities
Magento CVE-2019-8121 Vulnerability (CVE-2019-8121)
Sqlite Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-19925)
MySQL CVE-2018-2696 Vulnerability (CVE-2018-2696)
MySQL CVE-2019-2606 Vulnerability (CVE-2019-2606)
Python Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2183)