VDB
CVE-2026-9087
CVE-2026-9087
PUBLISHED
Keycloak ermöglicht Single Sign-On mit Identity and Access Management für moderne Anwendungen und Dienste.
EPSS 0.31% · 23.3th percentile
Risk Scores
EPSS Score
0.31%
23.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Open Source | Open Source Keycloak | |
| Red Hat | Red Hat Enterprise Linux | |
| Open Source | Open Source Keycloak <26.6.3 |
Timeline
- May 20, 2026 CVE Published
- May 20, 2026 PoC Published
- May 21, 2026 EPSS Score
- May 21, 2026 Coalition ESS Score
- May 21, 2026 Security Advisory
- May 22, 2026 EPSS Score
- May 23, 2026 EPSS Score
- May 24, 2026 EPSS Score
- May 25, 2026 EPSS Score
- May 26, 2026 EPSS Score
- May 27, 2026 EPSS Score
- May 28, 2026 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-1616.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-1616 advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2480172 advisory
- https://github.com/advisories/GHSA-m6qj-3mpp-57v8 advisory
- https://www.keycloak.org/2026/06/keycloak-2663-released advisory
- https://access.redhat.com/errata/RHSA-2026:25098 advisory
- https://access.redhat.com/errata/RHSA-2026:25097 advisory
- https://access.redhat.com/errata/RHSA-2026:30049 advisory
- https://access.redhat.com/errata/RHSA-2026:30084 advisory
- https://access.redhat.com/errata/RHSA-2026:30050 advisory
- https://access.redhat.com/errata/RHSA-2026:30083 advisory