A flaw was found in Keycloak Policy Enforcer. This vulnerability allows any authenticated user to bypass all authorization policies, including role, scope, and User-Managed Access (UMA) permission checks. By including the configured access-denied page path within a request URL, either as a path segment or a query parameter, an attacker can gain unauthorized access to protected resources.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 26.4, < 26.4.13CPE matchmatch criteria | cpe:2.3:a:redhat:build_of_keycloak:*:*:*:*:*:*:*:* | ||
>= 26.6, <= 26.6.4CPE matchmatch criteria | cpe:2.3:a:redhat:build_of_keycloak:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.