
https://access.redhat.com/security/cve/cve-2026-1190 #BugBounty https://t.co/7BoaoHUFFy
Post summary
The tweet shares a link to the Red Hat CVE page for CVE‑2026‑1190 along with a #BugBounty tag, but provides no further details.
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
A flaw was found in Keycloak's SAML brokering functionality. When Keycloak is configured as a client in a Security Assertion Markup Language (SAML) setup, it fails to validate the `NotOnOrAfter` timestamp within the `SubjectConfirmationData`. This allows an attacker to delay the expiration of SAML responses, potentially extending the time a response is considered valid and leading to unexpected session durations or resource consumption.
Priority
LOW
Exploitation
NONE
PoC
NONE
Patch
NONE
Momentum
STABLE
| Date | Total | Labels |
|---|
| 2026-01-28 | 1 | Disclosure1 |
| 2026-03-05 | 1 | General1 |

https://access.redhat.com/security/cve/cve-2026-1190 #BugBounty https://t.co/7BoaoHUFFy
Post summary
The tweet shares a link to the Red Hat CVE page for CVE‑2026‑1190 along with a #BugBounty tag, but provides no further details.

https://www.tenable.com/cve/CVE-2026-1190 This is me ;) my first #CVE #BugBounty https://t.co/9vXtECA0zw
Post summary
The tweet announces the author's first CVE discovery and bug bounty with a link to the Tenable CVE page, but provides no exploit details or patches.