漏洞描述 Red Hat Keycloak是美国红帽(Red Hat)公司的一套为现代应用和服务提供身份验证和管理功能的软件。 Red Hat Keycloak存在信息泄露漏洞。攻击者利用该漏洞导致数据泄露或系统受损。
相关漏洞推荐 CVE-2020-10770: Keycloak <= 12.0.1 - request_uri Blind Server-Side Request Forgery (SSRF) POC 2025-08-01 | Keycloak Keycloak 12.0.1 and below allows an attacker to force the server to request an unverified URL using ... CVE-2020-27838: KeyCloak - Information Exposure POC 2025-08-01 | KeyCloak A flaw was found in keycloak in versions prior to 13.0.0. The client registration endpoint allows fe... CVE-2021-20323: Keycloak 10.0.0 - 18.0.0 - Cross-Site Scripting POC 2025-08-01 | Keycloak Keycloak 10.0.0 to 18.0.0 contains a cross-site scripting vulnerability via the client-registrations... SourceCodester Pet Grooming Management Software SQL注入漏洞 无POC 2025-09-22 00:22:31 | SourceCodester Pet Grooming Management Software SourceCodester Pet Grooming Management Software是SourceCodester开源的一个宠物美容管理系统。 SourceCodester Pet Groo... D-Link DIR-645 命令注入漏洞 无POC 2025-09-22 00:22:31 | D-Link DIR-645 D-Link DIR-645是中国友讯(D-Link)公司的一款无线路由器。 D-Link DIR-645 105B01版本存在命令注入漏洞,该漏洞源于对文件/soap.cgi中参数service的错...