Description
A flaw was found in the Keycloak Node.js Adapter. This flaw allows an attacker to benefit from an Open Redirect vulnerability in the checkSso function.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=2097007
Related Vulnerabilities
CVE-2023-6927 Vulnerability in maven package org.keycloak:keycloak-common
CVE-2023-25753 Vulnerability in maven package org.apache.shenyu:shenyu-common
CVE-2023-33246 Vulnerability in maven package org.apache.rocketmq:rocketmq-controller
CVE-2021-20218 Vulnerability in maven package io.fabric8:kubernetes-client
CVE-2021-20262 Vulnerability in maven package org.keycloak:keycloak-core