AI description
Automated description summarized from trusted sources.
CVE-2026-4282 describes a privilege escalation vulnerability found in Keycloak, an open-source identity and access management solution. The flaw resides within Keycloak's SingleUseObjectProvider component, which functions as a global key-value store for single-use tokens like authorization codes. The vulnerability stems from an improper isolation or compartmentalization of types and namespaces within this provider. This deficiency allows an unauthenticated attacker to forge authorization codes. Successful exploitation of this flaw can lead to the creation of access tokens with administrative capabilities.
- Description
- A flaw was found in Keycloak. The SingleUseObjectProvider, a global key-value store, lacks proper type and namespace isolation. This vulnerability allows an unauthenticated attacker to forge authorization codes. Successful exploitation can lead to the creation of admin-capable access tokens, resulting in privilege escalation.
- Source
- secalert@redhat.com
- NVD status
- Analyzed
- Products
- build_of_keycloak
CVSS 3.1
- Type
- Secondary
- Base score
- 7.4
- Impact score
- 5.2
- Exploitability score
- 2.2
- Vector string
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
- Severity
- HIGH
- secalert@redhat.com
- CWE-653
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
9
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:redhat:build_of_keycloak:-:*:*:*:text-only:*:*:*",
"matchCriteriaId": "1830E455-7E11-4264-862D-05971A42D4A6",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:redhat:build_of_keycloak:26.2:*:*:*:text-only:*:*:*",
"matchCriteriaId": "C339EBE3-6BFD-4082-B904-4E8DB87AAE68",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:redhat:build_of_keycloak:26.2.15:*:*:*:text-only:*:*:*",
"matchCriteriaId": "3BDF8A92-727E-401B-80BB-A141DCB39750",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:redhat:build_of_keycloak:26.4:*:*:*:text-only:*:*:*",
"matchCriteriaId": "100AA077-7467-4F62-A8FD-88BC336972DF",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:redhat:build_of_keycloak:26.4.11:*:*:*:text-only:*:*:*",
"matchCriteriaId": "17E79930-BE1C-4901-AF63-36B3EB149AFC",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]