← redhat

redhat / single_sign-on

15 known vulnerabilities in redhat single_sign-on.

CVEPriorityEPSSCVSSKEVWhat
CVE-2024-1635 Medium 4.6% 7.5 A vulnerability was found in Undertow. This vulnerability impacts a server that …
CVE-2024-7885 Medium 2.6% 7.5 A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses…
CVE-2025-9784 Medium 2.3% 7.5 A flaw was found in Undertow where malformed client requests can trigger server-…
CVE-2024-1132 Medium 1.6% 8.1 A flaw was found in Keycloak, where it does not properly validate URLs included …
CVE-2025-12543 Medium 1.4% 9.6 A flaw was found in the Undertow HTTP server core, which is used in WildFly, JBo…
CVE-2023-5379 Medium 1.0% 7.5 A flaw was found in Undertow. When an AJP request is sent that exceeds the max-h…
CVE-2024-7341 Medium 0.8% 7.1 A session fixation issue was discovered in the SAML adapters provided by Keycloa…
CVE-2026-28369 Medium 0.7% 8.7 A flaw was found in Undertow. When Undertow receives an HTTP request where the f…
CVE-2026-3009 Medium 0.3% 8.1 A security flaw in the IdentityBrokerService.performLogin endpoint of Keycloak a…
CVE-2026-16102 Medium 0.3% 8.1 A flaw was found in the Dynamic Client Registration (DCR) component of Keycloak,…
CVE-2026-15573 Medium 0.3% 8.1 A flaw was found in Keycloak's Authorization Services. The component responsible…
CVE-2019-10219 Low 2.2% 6.1 A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotat…
CVE-2024-8883 Low 2.1% 6.1 A misconfiguration flaw was found in Keycloak. This issue can allow an attacker …
CVE-2026-16093 Low 0.4% 5.4 Keycloak provides a mechanism called Client Policies to enforce security require…
CVE-2026-15945 Low 0.3% 4.3 A flaw was found in the group search functionality of the Keycloak server's admi…