redhat / single_sign-on
15 known vulnerabilities in redhat single_sign-on.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2024-1635 | Medium | 4.6% | 7.5 | A vulnerability was found in Undertow. This vulnerability impacts a server that … | |
| CVE-2024-7885 | Medium | 2.6% | 7.5 | A vulnerability was found in Undertow where the ProxyProtocolReadListener reuses… | |
| CVE-2025-9784 | Medium | 2.3% | 7.5 | A flaw was found in Undertow where malformed client requests can trigger server-… | |
| CVE-2024-1132 | Medium | 1.6% | 8.1 | A flaw was found in Keycloak, where it does not properly validate URLs included … | |
| CVE-2025-12543 | Medium | 1.4% | 9.6 | A flaw was found in the Undertow HTTP server core, which is used in WildFly, JBo… | |
| CVE-2023-5379 | Medium | 1.0% | 7.5 | A flaw was found in Undertow. When an AJP request is sent that exceeds the max-h… | |
| CVE-2024-7341 | Medium | 0.8% | 7.1 | A session fixation issue was discovered in the SAML adapters provided by Keycloa… | |
| CVE-2026-28369 | Medium | 0.7% | 8.7 | A flaw was found in Undertow. When Undertow receives an HTTP request where the f… | |
| CVE-2026-3009 | Medium | 0.3% | 8.1 | A security flaw in the IdentityBrokerService.performLogin endpoint of Keycloak a… | |
| CVE-2026-16102 | Medium | 0.3% | 8.1 | A flaw was found in the Dynamic Client Registration (DCR) component of Keycloak,… | |
| CVE-2026-15573 | Medium | 0.3% | 8.1 | A flaw was found in Keycloak's Authorization Services. The component responsible… | |
| CVE-2019-10219 | Low | 2.2% | 6.1 | A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotat… | |
| CVE-2024-8883 | Low | 2.1% | 6.1 | A misconfiguration flaw was found in Keycloak. This issue can allow an attacker … | |
| CVE-2026-16093 | Low | 0.4% | 5.4 | Keycloak provides a mechanism called Client Policies to enforce security require… | |
| CVE-2026-15945 | Low | 0.3% | 4.3 | A flaw was found in the group search functionality of the Keycloak server's admi… |