Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
e744be93 by Salvatore Bonaccorso at 2026-06-25T21:23:26+02:00
Add new Keycloak issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
 CVE-2026-9800 (A flaw was found in Keycloak Policy Enforcer. This 
vulnerability allow ...)
-       TODO: check
+       - keycloak <itp> (bug #1088287)
 CVE-2026-9799 (A flaw was found in org.keycloak.authorization. An 
authenticated user  ...)
-       TODO: check
+       - keycloak <itp> (bug #1088287)
 CVE-2026-9718 (CWE-617 Reachable Assertion vulnerability exists that could 
allow an a ...)
        NOT-FOR-US: Schneider Electric
 CVE-2026-9717 (CWE-78 Neutralization of Special Elements used in an OS Command 
('OS C ...)
@@ -9,17 +9,17 @@ CVE-2026-9717 (CWE-78 Neutralization of Special Elements used 
in an OS Command (
 CVE-2026-9716 (CWE-476 NULL Pointer Dereference vulnerability exists that 
could cause ...)
        NOT-FOR-US: Schneider Electric
 CVE-2026-9705 (A flaw was found in Keycloak's client registration service. A 
remote a ...)
-       TODO: check
+       - keycloak <itp> (bug #1088287)
 CVE-2026-9651 (CWE-732 Incorrect Permission Assignment for Critical Resource 
vulnerab ...)
        NOT-FOR-US: Schneider Electric
 CVE-2026-9650 (CWE-522 Insufficiently Protected Credentials vulnerability that 
could  ...)
        NOT-FOR-US: Schneider Electric
 CVE-2026-9099 (A flaw was found in Keycloak. A missing authorization check in 
the Gro ...)
-       TODO: check
+       - keycloak <itp> (bug #1088287)
 CVE-2026-9086 (A flaw was found in Keycloak. A remote attacker with 
administrative pr ...)
-       TODO: check
+       - keycloak <itp> (bug #1088287)
 CVE-2026-9083 (A flaw was found in Keycloak. A realm administrator with the 
"manage-r ...)
-       TODO: check
+       - keycloak <itp> (bug #1088287)
 CVE-2026-6432 (Improper bounds validation in EmberZNet SDK versions 9.0.2 and 
earlier ...)
        NOT-FOR-US: Silicon Labs
 CVE-2026-6291 (Bleichenbacher padding oracle in PKCS#7 KTRI decryption. When 
decrypti ...)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e744be93cb07428860919d2bf0180f7e66fc37a5

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e744be93cb07428860919d2bf0180f7e66fc37a5
You're receiving this email because of your account on salsa.debian.org. Manage 
all notifications: https://salsa.debian.org/-/profile/notifications | Help: 
https://salsa.debian.org/help


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to