6.1
CVSSv3

CVE-2020-1723

CVSSv4: NA | CVSSv3: 6.1 | CVSSv2: 5.8 | VMScore: 710 | EPSS: 0.00241 | KEV: Not Included
Published: 28/01/2021 Updated: 21/11/2024

Vulnerability Summary

A flaw was found in Keycloak Gatekeeper (Louketo). The logout endpoint can be abused to redirect logged-in users to arbitrary web pages. Affected versions of Keycloak Gatekeeper (Louketo): 6.0.1, 7.0.0

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

keycloak gatekeeper project keycloak gatekeeper 6.0.1

keycloak gatekeeper project keycloak gatekeeper 7.0.0

redhat mobile application platform 4.0

Vendor Advisories

A security issue was found in keycloak The logout endpoint /oauth/logout?redirect=url can be abused to redirect logged in users to arbitrary web pages This vulnerability could be used in phishing attacks ...
Multiple vulnerabilities have been found in Hitachi Ops Center Common Services CVE-2020-1695, CVE-2020-1723, CVE-2020-1725, CVE-2020-10770, CVE-2020-14302, CVE-2020-15522, CVE-2020-25711, CVE-2020-27838, CVE-2020-28052, CVE-2020-28491, CVE-2021-3424, CVE-2021-3712, CVE-2021-20195, CVE-2021-20202, CVE-2021-20222, CVE-2021-20262, CVE-2021-21290, C ...