Skip to content

Keycloak SAML signature validation flaw

High severity GitHub Reviewed Published Sep 19, 2024 to the GitHub Advisory Database • Updated Nov 5, 2024

Package

maven org.keycloak:keycloak-saml-core (Maven)

Affected versions

< 25.0.6

Patched versions

25.0.6
Published by the National Vulnerability Database Sep 19, 2024
Published to the GitHub Advisory Database Sep 19, 2024
Reviewed Sep 19, 2024
Last updated Nov 5, 2024

Severity

High

EPSS score

1.145%
(85th percentile)

Weaknesses

CVE ID

CVE-2024-8698

GHSA ID

GHSA-4xx7-2cx3-x473

Source code

Loading Checking history
See something to contribute? Suggest improvements for this vulnerability.