20 lines
786 B
JSON
Raw Normal View History

{
"id": "CVE-2023-0264",
"sourceIdentifier": "secalert@redhat.com",
"published": "2023-08-04T18:15:11.090",
"lastModified": "2023-08-04T18:53:22.053",
"vulnStatus": "Awaiting Analysis",
"descriptions": [
{
"lang": "en",
"value": "A flaw was found in Keycloaks OpenID Connect user authentication, which may incorrectly authenticate requests. An authenticated attacker who could obtain information from a user request within the same realm could use that data to impersonate the victim and generate new session tokens. This issue could impact confidentiality, integrity, and availability."
}
],
"metrics": {},
"references": [
{
"url": "https://access.redhat.com/security/cve/CVE-2023-0264",
"source": "secalert@redhat.com"
}
]
}