<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 09:25:03 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-67163</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-67163</link>
      <description>EUVD-2026-67163</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-67163</guid>
    </item>
    <item>
      <title>fkie_cve-2018-14658</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-14658</link>
      <description>&lt;p&gt;A flaw was found in JBOSS Keycloak 3.2.1.Final. The Redirect URL for both Login and Logout are not normalized in org.keycloak.protocol.oidc.utils.RedirectUtils before the redirect url is verified. This can lead to an Open Redirection attack&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in JBOSS Keycloak 3.2.1.Final. The Redirect URL for both Login and Logout are not normalized in org.keycloak.protocol.oidc.utils.RedirectUtils before the redirect url is verified. This can lead to an Open Redirection attack&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-14658</guid>
    </item>
    <item>
      <title>GHSA-3qh2-mccc-q5m6 — Keycloak Open Redirect</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3qh2-mccc-q5m6</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.keycloak:keycloak-core&lt;/p&gt;
&lt;p&gt;A flaw was found in JBOSS Keycloak 3.2.1.Final. The Redirect URL for both Login and Logout are not normalized in `org.keycloak.protocol.oidc.utils.RedirectUtils` before the redirect url is verified. This can lead to an Open Redirection attack&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: org.keycloak:keycloak-core&lt;/p&gt;
&lt;p&gt;A flaw was found in JBOSS Keycloak 3.2.1.Final. The Redirect URL for both Login and Logout are not normalized in `org.keycloak.protocol.oidc.utils.RedirectUtils` before the redirect url is verified. This can lead to an Open Redirection attack&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3qh2-mccc-q5m6</guid>
    </item>
    <item>
      <title>gsd-2018-14658</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-14658</link>
      <description>gsd-2018-14658</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-14658</guid>
    </item>
    <item>
      <title>RHSA-2018:3592 — Red Hat Security Advisory: Red Hat Single Sign-On 7.2.5 on RHEL 6 security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2018:3592</link>
      <description>&lt;p&gt;keycloak: auth permitted with expired certs in SAML client keycloak: expiration not validated in SAML broker consumer endpoint keycloak: XSS-Vulnerability with response_mode=form_post keycloak: brute force protection not working for the entire login workflow keycloak: Open Redirect in Login and Logout&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;keycloak: auth permitted with expired certs in SAML client keycloak: expiration not validated in SAML broker consumer endpoint keycloak: XSS-Vulnerability with response_mode=form_post keycloak: brute force protection not working for the entire login workflow keycloak: Open Redirect in Login and Logout&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2018:3592</guid>
    </item>
  </channel>
</rss>
