Related Vulnerabilities: CVE-2021-3424  

A security issue was found in keycloak where IDN homograph attacks are possible. A malicious user can register himself with a name already registered and trick admin to grant him extra privileges.

Severity Medium

Remote Yes

Type Content spoofing

Description

A security issue was found in keycloak where IDN homograph attacks are possible. A malicious user can register himself with a name already registered and trick admin to grant him extra privileges.

AVG-1332 keycloak 12.0.4-1 High Vulnerable

https://bugzilla.redhat.com/show_bug.cgi?id=1933320
https://issues.redhat.com/browse/KEYCLOAK-17256