Description
A flaw was found in keycloak where keycloak may fail to logout user session if the logout request comes from external SAML identity provider and Principal Type is set to Attribute [Name].
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1941565
Related Vulnerabilities
CVE-2021-23386 Vulnerability in npm package dns-packet
CVE-2023-24807 Vulnerability in npm package undici
CVE-2023-4759 Vulnerability in maven package org.eclipse.jgit:org.eclipse.jgit
CVE-2022-37724 Vulnerability in maven package wonder.utilities:utilities
CVE-2020-13942 Vulnerability in maven package org.apache.unomi:unomi-services