An issue was discovered in Keycloak that allows arbitrary Javascript to be uploaded for the SAML protocol mapper even if the UPLOAD_SCRIPTS feature is disabled
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2022-08-05T16:46:34
Updated: 2024-08-03T00:46:03.654Z
Reserved: 2022-08-05T00:00:00
Link: CVE-2022-2668
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-08-05T17:15:08.663
Modified: 2024-11-21T07:01:28.817
Link: CVE-2022-2668
Redhat