Description
A flaw was found in the reset credential flow in all Keycloak versions before 8.0.0. This flaw allows an attacker to gain unauthorized access to the application.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1718
Related Vulnerabilities
CVE-2024-36401 Vulnerability in maven package org.geoserver.web:gs-web-app
CVE-2020-14968 Vulnerability in maven package org.webjars.bower:jsrsasign
CVE-2023-49655 Vulnerability in maven package org.jenkins-ci.plugins:matlab
CVE-2022-1243 Vulnerability in maven package org.webjars.bower:urijs
CVE-2020-36319 Vulnerability in maven package com.vaadin:flow-server