[Git][security-tracker-team/security-tracker][master] Add CVE-2026-4629/Keycloak, itp'ed
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Wed Jul 1 06:19:25 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
5dbec395 by Salvatore Bonaccorso at 2026-07-01T07:18:51+02:00
Add CVE-2026-4629/Keycloak, itp'ed
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -130,7 +130,7 @@ CVE-2026-50750 (Denial of Service via Out of Memory vulnerability in Apache Acti
CVE-2026-50734 (Memory Allocation with Excessive Size Value vulnerability in Apache Ac ...)
TODO: check
CVE-2026-4629 (A flaw was found in Keycloak. A highly privileged user with `manage-cl ...)
- TODO: check
+ - keycloak <itp> (bug #1088287)
CVE-2026-4360 (In the Tarfile.extract() function, the filter parameter is not passed ...)
TODO: check
CVE-2026-49877 (Improper Authorization vulnerability in Apache ActiveMQ. An authentic ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5dbec39557bb7903f4b997da5399549e1adad3f3
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5dbec39557bb7903f4b997da5399549e1adad3f3
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260701/23ae1e13/attachment.htm>
More information about the debian-security-tracker-commits
mailing list