Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
e744be93 by Salvatore Bonaccorso at 2026-06-25T21:23:26+02:00
Add new Keycloak issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,7 +1,7 @@
CVE-2026-9800 (A flaw was found in Keycloak Policy Enforcer. This
vulnerability allow ...)
- TODO: check
+ - keycloak <itp> (bug #1088287)
CVE-2026-9799 (A flaw was found in org.keycloak.authorization. An
authenticated user ...)
- TODO: check
+ - keycloak <itp> (bug #1088287)
CVE-2026-9718 (CWE-617 Reachable Assertion vulnerability exists that could
allow an a ...)
NOT-FOR-US: Schneider Electric
CVE-2026-9717 (CWE-78 Neutralization of Special Elements used in an OS Command
('OS C ...)
@@ -9,17 +9,17 @@ CVE-2026-9717 (CWE-78 Neutralization of Special Elements used
in an OS Command (
CVE-2026-9716 (CWE-476 NULL Pointer Dereference vulnerability exists that
could cause ...)
NOT-FOR-US: Schneider Electric
CVE-2026-9705 (A flaw was found in Keycloak's client registration service. A
remote a ...)
- TODO: check
+ - keycloak <itp> (bug #1088287)
CVE-2026-9651 (CWE-732 Incorrect Permission Assignment for Critical Resource
vulnerab ...)
NOT-FOR-US: Schneider Electric
CVE-2026-9650 (CWE-522 Insufficiently Protected Credentials vulnerability that
could ...)
NOT-FOR-US: Schneider Electric
CVE-2026-9099 (A flaw was found in Keycloak. A missing authorization check in
the Gro ...)
- TODO: check
+ - keycloak <itp> (bug #1088287)
CVE-2026-9086 (A flaw was found in Keycloak. A remote attacker with
administrative pr ...)
- TODO: check
+ - keycloak <itp> (bug #1088287)
CVE-2026-9083 (A flaw was found in Keycloak. A realm administrator with the
"manage-r ...)
- TODO: check
+ - keycloak <itp> (bug #1088287)
CVE-2026-6432 (Improper bounds validation in EmberZNet SDK versions 9.0.2 and
earlier ...)
NOT-FOR-US: Silicon Labs
CVE-2026-6291 (Bleichenbacher padding oracle in PKCS#7 KTRI decryption. When
decrypti ...)
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e744be93cb07428860919d2bf0180f7e66fc37a5
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e744be93cb07428860919d2bf0180f7e66fc37a5
You're receiving this email because of your account on salsa.debian.org. Manage
all notifications: https://salsa.debian.org/-/profile/notifications | Help:
https://salsa.debian.org/help
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits