CLEANSTART-2026-IG03697

See a problem?
Import Source
https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-IG03697.json
JSON Data
https://api.osv.dev/v1/vulns/CLEANSTART-2026-IG03697
Upstream
  • CVE-2026-18572
Published
2026-09-19T00:41:30Z
Modified
2026-09-19T01:00:06Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Keycloak provides authorization services that allow administrators to restrict access to resources based on time policies (for example, only allowing access during business hours)
Details

Security vulnerability affects the keycloak package. Keycloak provides authorization services that allow administrators to restrict access to resources based on time policies (for example, only allowing access during business hours).

References

Affected packages

CleanStart / keycloak

Package

Name
keycloak

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
26.7.2-r2

Database specific

source
"https://github.com/cleanstart-dev/cleanstart-security-advisories/blob/main/advisories/2026/CLEANSTART-2026-IG03697.json"