Vigilance.fr - Keycloak: user access via Password Reset LDAP Bind, analyzed on 22/01/2025
March 2025 by Vigilance.fr
An attacker can bypass restrictions of Keycloak, via Password Reset LDAP Bind, in order to gain user privileges.
Plus d'information sur : https://vigilance.fr/vulnerability/Keycloak-user-access-via-Password-Reset-LDAP-Bind-46170