VendorsKeycloakkeycloak-nodejs-auth-utils2.5.2
Vulnerabilities

Keycloak keycloak-nodejs-auth-utils 2.5.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2017-7474
It was found that the Keycloak Node.js adapter 2.5 - 3.0 did not handle invalid tokens correctly. An attacker could use this flaw to bypass authentication and gain access to restricted information, or to possibly conduct further attacks.
Published 2017-05-12 · Modified
9.8EPSS 0.025