Description
A flaw was found in keycloak where keycloak may fail to logout user session if the logout request comes from external SAML identity provider and Principal Type is set to Attribute [Name].
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1941565
Related Vulnerabilities
CVE-2020-19698 Vulnerability in maven package org.webjars.bowergithub.pandao:editor.md
CVE-2022-37265 Vulnerability in npm package steal
CVE-2022-25979 Vulnerability in maven package org.webjars.npm:jsuites
CVE-2022-23458 Vulnerability in npm package tui-grid
CVE-2020-1695 Vulnerability in maven package org.jboss.resteasy:resteasy-core