CVE-2022-1274
CVE-2022-1274
A flaw was found in Keycloak in the execute-actions-email endpoint. This issue allows arbitrary HTML to be injected into emails sent to Keycloak users and can be misused to perform phishing or other attacks against users.
Affected products
n/a · keycloakWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →