6.1
CVSSv3

CVE-2022-1970

Published: 19/10/2022 Updated: 07/11/2023
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

keycloak 18.0.0: open redirect in auth endpoint via the redirect_uri parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat keycloak 18.0.0

Github Repositories

Vulnerabilities you my miss during a penetration testing.

godkiller A repository containing zero-day vulnerabilities and proof-of-concepts (PoCs) of undisclosed CVEs discovered during penetration testing or my security research This repository is constantly updating PoCs: CVE-2022-1970: Keycloak Oauth2 Account Takeover via Open Redirect: githubcom/j4k0m/godkiller/tree/main/CVE-2022-1970_account_takeover_poc CVE-2020-11431: i