Database/Control plane, storage & DevOps
Keycloak: SAML signature scope determined by position, not Reference
CVSS 7.7CVE-2024-8698Control plane, storage & DevOpscurated
Impact
SAML signature scope determined by position, not Reference -> signature validation bypass and impersonation
Who can reach it
Network (remote)
What to do
Control-plane: upgrade the IdP; revalidate every SAML client config
References
Related entries
- Keycloak: Regex complexity in SearchQueryUtilsCVE-2024-10270 · KeycloakMedium
- Keycloak: OIDC authentication flaw - attacker reusing data from a same-realm request impersonates a userCVE-2023-0264 · KeycloakMedium
- Keycloak: Redirect scheme filtering bypassed by appending a wildcardCVE-2023-6134 · KeycloakMedium
- Keycloak: Wildcard in the JARM form_post.jwt response modeCVE-2023-6927 · KeycloakMedium
- Tridium Niagara Framework and Niagara Enterprise Security (before 4.10.11 / 4.14.2 / 4.15.1): A chain, not a singleCVE-2025-3937 · Tridium Niagara Framework and Niagara Enterprise Security (before 4.10.11 / 4.14.2 / 4.15.1)High
- GitLab CE/EE: environment scope matching lets an authenticated user read CI/CD variables outside their scopeCVE-2026-13210 · GitLab CE/EE (CI/CD environment scope pattern matcher)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.