CVE-2024-4028 - Keycloak Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2024-4028 Published : Feb. 18, 2025, 6:15 p.m. | 2 hours, 14 minutes ago Description : A vulnerability was found in Keycloak. This issue may allow a privileged attacker to use a malicious payload as the permission while creating items (Resource and Permissions) from the admin console, leading to a stored cross-site scripting (XSS) attack. Severity: 3.8 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Feb 18, 2025 - 21:31
 0  0
CVE-2024-4028 - Keycloak Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-4028
Published : Feb. 18, 2025, 6:15 p.m. | 2 hours, 14 minutes ago
Description : A vulnerability was found in Keycloak. This issue may allow a privileged attacker to use a malicious payload as the permission while creating items (Resource and Permissions) from the admin console, leading to a stored cross-site scripting (XSS) attack.
Severity: 3.8 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...