Description
A flaw was found in the Keycloak Node.js Adapter. This flaw allows an attacker to benefit from an Open Redirect vulnerability in the checkSso function.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=2097007
Related Vulnerabilities
CVE-2017-5645 Vulnerability in maven package org.apache.logging.log4j:log4j-core
CVE-2016-4999 Vulnerability in maven package org.dashbuilder:dashbuilder-dataset-sql
CVE-2023-4301 Vulnerability in maven package org.jenkins-ci.plugins:fortify
CVE-2022-45347 Vulnerability in maven package org.apache.shardingsphere:shardingsphere-proxy
CVE-2019-10249 Vulnerability in maven package org.eclipse.xtext:org.eclipse.xtext.maven.parent