A flaw was found in keycloak where keycloak may fail to logout user session if the logout request comes from external SAML identity provider and Principal Type is set to Attribute [Name].
{ "nvd_published_at": "2022-04-01T23:15:00Z", "cwe_ids": [ "CWE-613" ], "severity": "HIGH", "github_reviewed": true, "github_reviewed_at": "2023-07-11T23:38:35Z" }