Excessive privileges In keycloak-connect
Description
Improper privilege management in Keycloak A flaw was found in Keycloak, where it would permit a user with a view-profile role to manage the resources in the new account console. This flaw allows a user with a view-profile role to access and modify data for which the user does not have adequate permission.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
npm | 12.0.0 | ||
maven | 12.0.0 | ||
maven | 12.0.0 | ||
maven | 12.0.0 | ||
maven | 12.0.0 | ||
maven | 12.0.0 |
Aliases
1. 2. 3. 4. 5.