Package
keycloak
Component
keycloak-services
Latest update
5.3
CVSS V3
Build, ship, and run secure software with minimal, hardened container images — rebuilt from source daily and guarded under our industry-leading remediation SLA.
Start for freeStatus
Impact
This vulnerability affects the keycloak-services component version 26.3.2. The GitHub Advisory indicates no fix is currently available (firstPatchedVersion: null). This is a self-contained vulnerability in the Keycloak services JAR that requires upstream maintainers to develop and release a security fix. Unlike the EOL keycloak-21.1 package, this is an actively supported version that should receive security updates from upstream.
Status