セキュリティ対策Lab[verified]@securityLab_jpPatch
The article announces that Keycloak has released patches to fix four critical CVEs.
CCB Alert@CCBalertDisclosure
The bulletin announces two high‑severity RedHat Keycloak SAML broker authorization bypass flaws (CVE‑2026‑3047 and CVE‑2026‑3009) with CVSS scores of 8.8–8.1, outlining the risk of remote unauthorized access.
Autumn Good@autumn_good_35Patch
The message announces the Keycloak 26.5.5 release that addresses four CVEs, indicating a patch update.
The Hacker Wire@TheHackerWireDisclosure
A high‑severity CVE‑2026‑3047 affecting Keycloak’s SAML broker has been disclosed, outlining how a disabled SAML client can be exploited as an IdP‑initiated broker landing target. No active exploitation, patch, or exploit code is mentioned.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The tweet announces CVE‑2026‑3047, a SAML Broker Authentication Bypass in Keycloak, without providing PoC, exploit, or patch details.
CVEFind.com@CveFindComDisclosure
The post announces a high‑severity flaw in Keycloak’s SAML broker that lets attackers bypass authentication and gain unauthorized client access during login, but no proof‑of‑concept, exploit code, or remediation steps are disclosed.
CVE@CVEnewDisclosure
The text reports a flaw discovered in Keycloak's SAML broker but offers no technical specifics, mitigation steps, or exploitation details.