Tootfinder

Opt-in global Mastodon full text search. Join the index!

@hacksilon@infosec.exchange
2026-08-24 18:09:02

Good to see that some publications are finally picking up the critical #Keycloak CVE. A bit surprising that it took more than 5 days.

@hacksilon@infosec.exchange
2026-08-19 17:02:26

PSA: Critical unauthenticated account takeover vulnerability in #Keycloak - allows resetting arbitrary users‘ passwords. Update to 26.7.2 immediately or disable password reset. Tracked as CVE-2026-18963. #infosec