Total vulnerabilities in the database
A flaw was found in Keycloak. This vulnerability allows anyone to register a new security device or key when there is not a device already registered for any user by using the WebAuthn password-less login flow.
Software | From | Fixed in |
---|---|---|
redhat / single_sign-on | 7.0 | 7.0.x |
redhat / keycloak | - | 15.1.0 |
redhat / single_sign-on | 7.4 | 7.4.9 |
![]() |
- | 15.1.0 |