First published: Wed Oct 13 2021(Updated: )
A POST based reflected Cross Site Scripting vulnerability on has been identified in Keycloak.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Keycloak | <17.0.0 | |
redhat/keycloak | <18.0.0 | 18.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-20323 is a POST based reflected Cross Site Scripting vulnerability in Keycloak.
CVE-2021-20323 has a severity rating of medium (6.1).
The affected software includes Redhat Keycloak versions up to 17.0.0 and redhat/keycloak versions up to 18.0.0.
To fix CVE-2021-20323, update your Keycloak installation to version 18.0.0 or higher.
More information about CVE-2021-20323 can be found at the following link: https://bugzilla.redhat.com/show_bug.cgi?id=2013577