Known vulnerabilities in Red Hat build of Keycloak 26.6.0 - page 3
Vendor:
Red Hat Inc.
Software:
Red Hat build of Keycloak
Version:
26.6.0
Software CPE:
cpe:2.3:a:red_hat:red_hat_build_of_keycloak:*:*:*:*:*:*:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
46
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Vulnerabilities by Severity
26.6.2
26.6.1
26.6.0
26.2.12
26.2.7
26.2.4
26.2.3
26.2.2
26.2.1
26.2.0
26.4.8
26.4.7
26.4.5
26.4.3
26.4.2
26.4.1
26.4.0
26.6.6
26.4.15
26.6.5
26.6.4
26.4.13
26.6.3
26.4.12
26.2.16
26.4.11
26.2.15
26.4.10
26.2.14
26.4.9
26.2.13
26.4.6
26.2.11
26.4.4
26.0.17
26.2.10
26.0.16
26.2.9
26.2.8
26.0.15
26.2.6
26.0.13
26.2.5
26.0.11
26.0.10
26.0.8
26.0.6
24.0.9
24.0.8
22.0.13
24.0.7
22.0.12
22.0.11
24.0.5
Vulnerabilities (46)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU146996 - Improper Handling of Insufficient Permissions or Privileges CVE-2026-9792 |
CWE-280 | Medium | 26.4.13, 26.6.3 | 05.09.2026 |
SB2026090517 SB2026091122 SB2026091128 |
||
| #VU146989 - Use of Client-Side Authentication CVE-2026-8830 |
CWE-603 | Low | 26.4.13, 26.6.3 | 05.09.2026 |
SB2026090517 SB2026091122 SB2026091128 |
||
| #VU146988 - Incorrect Implementation of Authentication Algorithm CVE-2026-8922 |
CWE-303 | Low | 26.4.13, 26.6.3 | 05.09.2026 |
SB2026090517 SB2026091122 SB2026091128 |
||
| #VU146987 - Direct Request ('Forced Browsing') CVE-2026-7500 |
CWE-425 | Medium | 26.4.13, 26.6.3 | 05.09.2026 |
SB2026090517 SB2026091122 SB2026091128 |
||
| #VU146986 - Improper input validation CVE-2026-37977 |
CWE-20 | Low | 26.4.13, 26.6.3 | 05.09.2026 |
SB2026090517 SB2026091122 SB2026091128 |
||
| #VU146985 - Server-Side Request Forgery (SSRF) CVE-2026-4874 |
CWE-918 | Low | 26.4.13, 26.6.3 | 05.09.2026 |
SB2026090517 SB2026091122 SB2026091128 |
Showing elements 41 - 60 out of 46