<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T07:34:23.619676+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-67163</id>
    <title>EUVD-2026-67163</title>
    <updated>2026-10-03T07:34:23.715262+00:00</updated>
    <content>EUVD-2026-67163</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-67163"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-14658</id>
    <title>fkie_cve-2018-14658</title>
    <updated>2026-10-03T07:34:23.715302+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in JBOSS Keycloak 3.2.1.Final. The Redirect URL for both Login and Logout are not normalized in org.keycloak.protocol.oidc.utils.RedirectUtils before the redirect url is verified. This can lead to an Open Redirection attack</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-14658"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3qh2-mccc-q5m6</id>
    <title>GHSA-3qh2-mccc-q5m6 — Keycloak Open Redirect</title>
    <updated>2026-10-03T07:34:23.715337+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: org.keycloak:keycloak-core</p>
<p>A flaw was found in JBOSS Keycloak 3.2.1.Final. The Redirect URL for both Login and Logout are not normalized in `org.keycloak.protocol.oidc.utils.RedirectUtils` before the redirect url is verified. This can lead to an Open Redirection attack</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3qh2-mccc-q5m6"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-14658</id>
    <title>gsd-2018-14658</title>
    <updated>2026-10-03T07:34:23.715362+00:00</updated>
    <content>gsd-2018-14658</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-14658"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2018:3592</id>
    <title>RHSA-2018:3592 — Red Hat Security Advisory: Red Hat Single Sign-On 7.2.5 on RHEL 6 security and bug fix update</title>
    <updated>2026-10-03T07:34:23.715375+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>keycloak: auth permitted with expired certs in SAML client keycloak: expiration not validated in SAML broker consumer endpoint keycloak: XSS-Vulnerability with response_mode=form_post keycloak: brute force protection not working for the entire login workflow keycloak: Open Redirect in Login and Logout</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2018:3592"/>
  </entry>
</feed>
