CVE-2026-18573Disclosure(redhat / build_of_keycloak)

LOWCVSS 6.5 · MEDIUM

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A flaw was found in the keycloak-services component of Keycloak, which is used for managing authentication and authorization flows. The issue occurs when a realm administrator configures client policies to enforce specific authentication requirements on confidential clients. Due to improper evaluation of the client state during an update operation, an attacker with client management permissions can bypass these security policies by first creating a public client and then updating it to a confidential client with weaker authentication. This can result in the persistence of clients that do not comply with the intended security hardening of the realm.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-862

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • build_of_keycloak

Threat summary

  • 4 mentions across 1 observed day

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • 4 total mentions across 1 day

Affected systems

Vendors
Products
build_of_keycloak

1 version affected across 1 product

Deep dive

Activity timeline4 mentions / 1d
01234Mentions · 2026-08-02: 4Technical Details · 2026-08-02: 208-02
Signal classification2 categories
Disclosure
375.0%
General
125.0%
Referenced assets5 URLs
Full discourse4 posts
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-18573 A flaw was found in the keycloak-services component of Keycloak, which is used for managing authentication and authorization flows. The issue occurs when a realm admi… https://www.cve.org/CVERecord?id=CVE-2026-18573 ----- Traducción: Se encontró una fa… http://infoflow.cloud`

    Post summary

    A brief disclosure of CVE-2026-18573 highlighting a flaw in Keycloak’s keycloak-services component; no PoC, exploit, patch, or active exploitation details are included.

    0000044
    96 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-18573 A flaw was found in the keycloak-services component of Keycloak, which is used for managing authentication and authorization flows. The issue occurs when a realm admi… https://www.cve.org/CVERecord?id=CVE-2026-18573

    Post summary

    The text announces a flaw in the keycloak-services component of Keycloak that occurs during realm admin operations, but it lacks specific technical details, exploit information, or mitigation guidance.

    00000950
    57.9K followersView on X
  • MalwareObserver@MalwareObserver
    Disclosure

    🐛 VULNERABILITIES CVE Notify: 🚨 [CVE-2026-18573](https://access.redhat.com/security/cve/CVE-2026-18573) A flaw was found in the k... https://access.redhat.com/security/cve/CVE-2026-18573 #PatchManagement #Vulnerability #CVE

    Post summary

    The post announces CVE‑2026‑18573 and links to RedHat’s CVE page but offers no technical details, PoC, patch information, or evidence of exploitation.

    0000037
    18 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-18573 Client Policy Bypass in Keycloak via Improper State Evaluation During Up... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-18573 Vulnerability Notification: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=3

    Post summary

    The tweet announces CVE-2026-18573, a client policy bypass in Keycloak, with links to more details but no evidence of an exploit, patch, or active exploitation.

    00000103
    4.1K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appredhatbuild_of_keycloak---

Explore more