← Back to CVE List

CVE-2020-1727

Published: 2020-06-22T19:15Z
Last Modified: 2024-11-21T05:11Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A vulnerability was found in Keycloak before 9.0.2, where every Authorization URL that points to an IDP server lacks proper input validation as it allows a wide range of characters. This flaw allows a malicious to craft deep links that introduce further attack scenarios on affected clients. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt