Description
A flaw was found in the Keycloak Node.js Adapter. This flaw allows an attacker to benefit from an Open Redirect vulnerability in the checkSso function.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=2097007
Related Vulnerabilities
CVE-2020-9281 Vulnerability in npm package ckeditor4-dev
CVE-2021-36774 Vulnerability in maven package org.apache.kylin:kylin-core-common
CVE-2023-6393 Vulnerability in maven package io.quarkus:quarkus-cache
CVE-2018-20676 Vulnerability in maven package org.webjars:bootstrap
CVE-2022-3783 Vulnerability in npm package node-red-dashboard