CVE Database
/

CVE-2023-0105

Back to search

CVE-2023-0105

Published: Jan 11, 2023

Modified: Apr 9, 2025

PUBLISHED

Description

A flaw was found in Keycloak. This flaw allows impersonation and lockout due to the email trust not being handled correctly in Keycloak. An attacker can shadow other users with the same email and lockout or impersonate them.

VendorProductVersions

redhat.com

Keycloak

unknown
n/a

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now