Description
A flaw was found in keycloak before version 13.0.0. In some scenarios a user still has access to a resource after changing the role mappings in Keycloak and after expiration of the previous access token.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-1113 | A flaw was found in keycloak before version 13.0.0. In some scenarios a user still has access to a resource after changing the role mappings in Keycloak and after expiration of the previous access token. |
Github GHSA |
GHSA-p225-pc2x-4jpm | Incorrect Authorization in keycloak |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T06:46:30.455Z
Reserved: 2019-11-27T00:00:00.000Z
Link: CVE-2020-1725
No data.
Status : Modified
Published: 2021-01-28T20:15:12.837
Modified: 2024-11-21T05:11:14.903
Link: CVE-2020-1725
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA