Improper Validation of Syntactic Correctness of Input in Keycloak - CVE-2026-7307
Published: September 10, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to improper validation of syntactic correctness of input in the SAML endpoint when processing specially crafted XML input. A remote attacker can send a specially crafted XML input to cause a denial of service.
The malicious input can cause high CPU usage and worker thread starvation, making the server unavailable.
Affected software
Red Hat build of Keycloak
How to mitigate CVE-2026-7307
Red Hat build of Keycloak - addressed in versions 26.2.16, 26.4.12