Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
641957
AlmaLinux
4755
Alpaquita
9442
Alpine
4090
Android
3262
Azure Linux
12016
BellSoft Hardened Containers
451
Bitnami
7698
Chainguard
6067
CleanStart
815
CRAN
14
crates.io
2348
Debian
55717
Echo
3799
GHC
3
GIT
81524
GitHub Actions
50
Go
6778
Hackage
30
Hex
76
Julia
820
Linux
15361
Mageia
5895
Maven
6443
MinimOS
30449
npm
217799
NuGet
1677
opam
12
openEuler
6675
openSUSE
12707
OSS-Fuzz
3855
Packagist
6216
Pub
11
PyPI
19022
Red Hat
19726
Rocky Linux
3030
Root
13237
RubyGems
1953
SUSE
20561
SwiftURL
51
Ubuntu
53642
VSCode
18
Wolfi
3862
ID
Packages
Summary
Published
arrow_upward
Attributes
CLEANSTART-2026-FA60324
CleanStart/keycloak
It was found that the cookie used for CSRF prevention in Keycloak was not unique to each session
15 Apr
Fix available
Severity - 9.8 (Critical)
CLEANSTART-2026-KC06018
CleanStart/keycloak
Security fixes for CVE-2017-12158, CVE-2017-12159, ghsa-3p8m-j85q-pgmj, ghsa-45p5-v273-3qqr, ghsa-4cx2-fc23-5wg6, ghsa-5rfx-cp42-p624, ghsa-72hv-8253-57qq, ghsa-84h7-rjj3-6jx4, ghsa-9342-92gg-6v29, ghsa-cbdj-484d-3x9q, ghsa-fghv-69vj-qj49, ghsa-h5fg-jpgr-rv9c, ghsa-hq9p-pm7w-8p54, ghsa-j288-q9x7-2f5v, ghsa-pwqr-wmgm-9rr8, ghsa-w9fj-cfpg-grvv applied in versions: 26.1.4-r1, 26.5.0-r0, 26.5.0-r1, 26.5.0-r2, 26.5.6-r3
06 Apr
Fix available
Vulnerability Database - OSV