Related Vulnerabilities: CVE-2021-20222  

A security issue was found in keycloak. The new account console in keycloak can allow malicious code to be executed using the referrer URL.

Severity High

Remote Yes

Type Cross-site scripting

Description

A security issue was found in keycloak. The new account console in keycloak can allow malicious code to be executed using the referrer URL.

AVG-1332 keycloak 12.0.3-1 High Vulnerable

https://bugzilla.redhat.com/show_bug.cgi?id=1924606
https://issues.redhat.com/browse/KEYCLOAK-17033