PT-2026-28224 · Red Hat · Keycloak

·

CVE-2026-4874

·

Publicado

2026-03-26

·

Atualizado

2026-06-26

CVSS v3.1

3.1

Baixa

VetorAV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Keycloak (affected versions not specified)
Description An authenticated attacker can perform Server-Side Request Forgery (SSRF) by manipulating the client session host parameter during refresh token requests. This is possible when a Keycloak client is configured to use the backchannel.logout.url with the application.session.host placeholder. Successful exploitation allows the attacker to make HTTP requests from the Keycloak server’s network context, potentially probing internal networks or internal APIs, leading to information disclosure. Server-Side Request Forgery (SSRF) is a web security flaw that allows an attacker to induce the server-side application to make HTTP requests to an arbitrary domain of the attacker’s choosing.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SSRF

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-4874
GHSA-22RM-WP4X-V5CX

Produtos afetados

Keycloak