CVE Published: 12/05/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: redhat |
Vendor: Red Hat, Inc. |
Product: Keycloak Node.js adapter Status : PUBLISHED
CVE-2017-7474 Description
It was found that the Keycloak Node.js adapter 2.5 - 3.0 did not handle invalid tokens correctly. An attacker could use this flaw to bypass authentication and gain access to restricted information, or to possibly conduct further attacks.