Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
Loading…
Maven/org.keycloak:keycloak-ldap-federation — 4 CVEs · VulnScope
pkg:Maven/
org.keycloak:keycloak-ldap-federation
4 total CVEs
MEDIUM
2
LOW
1
✅ Check your installed version
Check
All known vulnerabilities
MEDIUM
5.5
CVE-2025-13467
Keycloak LDAP User Federation provider enables admin-triggered untrusted Java deserialization
>= 26.3.0, < 26.4.6
MEDIUM
5.4
CVE-2025-0604
Authentication Bypass Due to Missing LDAP Bind After Password Reset in Keycloak
>= 26.1.0, < 26.1.3
LOW
2.7
CVE-2024-5967
Keycloak leaks configured LDAP bind credentials through the Keycloak admin console
>= 25.0.0, < 25.0.1
—
Keycloak vulnerable to LDAP Injection on UsernameForm Login
from 0, < 23.0.1
CVE-2022-2232