CVE-2025-3910

A flaw was found in Keycloak. The org.keycloak.authorization package may be vulnerable to circumventing required actions, allowing users to circumvent requirements such as setting up two-factor authentication.
Configurations

Configuration 1 (hide)

cpe:2.3:a:redhat:build_of_keycloak:*:*:*:*:text-only:*:*:*

History

No history.

Information

Published : 2025-04-29 21:15

Updated : 2025-08-18 15:55


NVD link : CVE-2025-3910

Mitre link : CVE-2025-3910

CVE.ORG link : CVE-2025-3910


JSON object : View

Products Affected

redhat

  • build_of_keycloak
CWE
CWE-287

Improper Authentication