|
261
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A flaw was found in Keycloak. An authenticated user can bypass configured WebAuthn policies during credential registration by manipulating client-side JavaScript. This occurs because the server-side …
New
|
CWE-603
Use of Client-Side Authentication
|
CVE-2026-8830
|
2026-05-19 23:25 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
262
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Release of invalid pointer or reference vulnerability in Samsung Open Source Escargot allows Buffer Manipulation.
This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.
New
|
CWE-763
Release of Invalid Pointer or Reference
|
CVE-2026-47312
|
2026-05-19 23:25 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
263
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Memory allocation with excessive size value vulnerability in Samsung Open Source Escargot allows Excessive Allocation.
This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.
New
|
CWE-789
Memory Allocation with Excessive Size Value
|
CVE-2026-47313
|
2026-05-19 23:25 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
264
|
7.8 |
HIGH
Local
|
-
|
-
|
Out-of-bounds write vulnerability in Samsung Open Source Escargot allows Overflow Buffers.
This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.
New
|
CWE-787
Out-of-bounds Write
|
CVE-2026-47314
|
2026-05-19 23:25 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Improper Check for Unusual or Exceptional Conditions vulnerability in Samsung Open Source Escargot allows Input Data Manipulation.
This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2…
New
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2026-47315
|
2026-05-19 23:25 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
266
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Improper Check or Handling of Exceptional Conditions vulnerability in Samsung Open Source Escargot allows Input Data Manipulation.
This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2…
New
|
CWE-703
Improper Check or Handling of Exceptional Conditions
|
CVE-2026-47316
|
2026-05-19 23:25 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Uncontrolled Recursion vulnerability in Samsung Open Source Escargot allows Excessive Allocation.
This issue affects Escargot: 590345cc6258317c5da850d846ce6baaf2afc2d3.
New
|
CWE-674
Uncontrolled Recursion
|
CVE-2026-47317
|
2026-05-19 23:25 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
268
|
5.4 |
MEDIUM
Network
|
-
|
-
|
A flaw was found in Keycloak. When both realm-level and client-level `notBefore` revocation policies are configured, Keycloak's OpenID Connect (OIDC) Introspection feature fails to properly honor the…
New
|
CWE-303
Incorrect Implementation of Authentication Algorithm
|
CVE-2026-8922
|
2026-05-19 23:25 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269
|
4.9 |
MEDIUM
Network
|
-
|
-
|
A flaw was found in Keycloak. A low-privilege administrator with the 'view-clients' role can exploit this by invoking the 'evaluate-scopes' Admin API endpoints with an arbitrary user ID (userId) para…
New
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2026-37978
|
2026-05-19 23:25 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A flaw was found in Keycloak. A broken access control vulnerability in the Account Resources user lookup endpoint allows a remote authenticated user, who owns at least one User-Managed Access (UMA) r…
New
|
CWE-1220
Insufficient Granularity of Access Control
|
CVE-2026-37981
|
2026-05-19 23:25 |
2026-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|