CVE Published: 15/10/2019 |
CVE Updated: 05/08/2024 |
CVE Year: 2019 Source: redhat |
Vendor: keycloak |
Product: keycloak REST API Status : PUBLISHED
CVE-2019-14832 Description
A flaw was found in the Keycloak REST API before version 8.0.0 where it would permit user access from a realm the user was not configured. An authenticated attacker with knowledge of a user id could use this flaw to access unauthorized information or to carry out further attacks.