Keycloak vulnerable to privilege escalation on Token Exchange feature
Critical severity
GitHub Reviewed
Published
Apr 25, 2022
in
keycloak/keycloak
•
Updated Jun 27, 2023
Description
Published to the GitHub Advisory Database
Apr 26, 2022
Reviewed
Apr 26, 2022
Published by the National Vulnerability Database
Jul 8, 2022
Last updated
Jun 27, 2023
A privilege escalation flaw was found in the token exchange feature of keycloak. Missing authorization allows a client application holding a valid access token to exchange tokens for any target client by passing the client_id of the target. This could allow a client to gain unauthorized access to additional services.
References