CVE-2025-11419General

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw was found in Keycloak. This vulnerability allows an unauthenticated remote attacker to cause a denial of service (DoS) by repeatedly initiating TLS 1.2 client-initiated renegotiation requests to exhaust server CPU resources, making the service unavailable.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-770

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • General: 1 classified signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-13: 1Technical Details · 2026-02-13: 102-13
Signal classification1 categories
General
1100.0%
Full discourse1 post
  • transilienceai@transilienceai
    General

    Broader context: 2025 saw rises in supply-chain attacks (e.g., Docker Compose path traversal CVE-2025-11419) and AI-related weaknesses like LangGraph SQL injection. If this involves a real zero-day or private finding, report it via official channels like GitHub Security or MITRE CVE for verification. #ZeroDayAlert 🚨

    Post summary

    The post briefly references two CVEs, describing their vulnerability types (path traversal and SQL injection), but offers no evidence of exploitation, PoC, patch, or false‑positive claims. It serves as a general reminder to report zero‑day findings through official channels.

    1000037
    315 followersView on X

Explore more