OSV 1.4.0 · github-reviewed · 修改于 2021-04-02 03:38
发布时间
2022-02-09 08:58
GitHub 审查时间
2021-04-02 03:38
NVD 发布时间
2021-01-29 04:15
源文件
advisories/github-reviewed/2022/02/GHSA-p225-pc2x-4jpm/GHSA-p225-pc2x-4jpm.json
A flaw was found in keycloak before version 13.0.0. In some scenarios a user still has access to a resource after changing the role mappings in Keycloak and after expiration of the previous access token.