[Git][security-tracker-team/security-tracker][master] Add new Keycloak issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Sep 25 20:56:25 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
a38143df by Salvatore Bonaccorso at 2026-09-25T21:55:59+02:00
Add new Keycloak issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -39,7 +39,7 @@ CVE-2026-97864 (A vulnerability has been found in GibbonEdu Gibbon up to 30.0.01
CVE-2026-97863 (The cisco_firesight_manager_ACL_rule_export module in misp-modules gen ...)
TODO: check
CVE-2026-97846 (Keycloak provides a feature called mTLS holder-of-key binding which en ...)
- TODO: check
+ - keycloak <itp> (bug #1088287)
CVE-2026-97818 (phpIPAM through 1.8.3 has incorrect authorization for id=="admins" and ...)
TODO: check
CVE-2026-97764 (django-allauth before 65.19.4 does not have the expected limits on fai ...)
@@ -115,7 +115,7 @@ CVE-2026-96752 (The Zero Spam for WordPress plugin for WordPress is vulnerable t
CVE-2026-96568 (The Restaurant Menu and Food Ordering plugin for WordPress is vulnerab ...)
NOT-FOR-US: WordPress plugin
CVE-2026-96448 (A flaw was found in the Fine-Grained Admin Permissions (FGAP v2) featu ...)
- TODO: check
+ - keycloak <itp> (bug #1088287)
CVE-2026-96039 (The BA Book Everything plugin for WordPress is vulnerable to Stored Cr ...)
NOT-FOR-US: WordPress plugin
CVE-2026-95866 (The User Profile Builder \u2013 Beautiful User Registration Forms, Use ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a38143df689916adaac67e96d32a63d68670e822
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a38143df689916adaac67e96d32a63d68670e822
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260925/a498252e/attachment.htm>
More information about the debian-security-tracker-commits
mailing list