7.5
CVSSv3

CVE-2023-0456

Published: 27/09/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A flaw was found in APICast, when 3Scale's OIDC module does not properly evaluate the response to a mismatched token from a separate realm. This could allow a separate realm to be accessible to an attacker, permitting access to unauthorized information.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat apicast

Vendor Advisories

Description<!----> This CVE is under investigation by Red Hat Product Security ...