Vulnerabilities > CVE-2022-2668 - Unspecified vulnerability in Redhat Keycloak and Single Sign-On
Attack vector
NETWORK Attack complexity
LOW Privileges required
HIGH Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
An issue was discovered in Keycloak that allows arbitrary Javascript to be uploaded for the SAML protocol mapper even if the UPLOAD_SCRIPTS feature is disabled
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |