CVE-2026-105301EPSS p1.7%
CVE-2026-105301CVE-2026-105301
Description
A flaw was found in the X.509 client-certificate authenticator of Keycloak, a solution for identity and access management. The issue occurs when the server is configured to check certificate revocation using CRL Distribution Points or OCSP. An attacker can provide a specially crafted certificate that points to a malicious server, causing Keycloak to make unauthorized outbound requests to internal or external endpoints before the certificate is fully validated. This can lead to a blind server-side request forgery (SSRF) attack.
Scoring
| CVSS | 4.0 () |
| Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:N/A:N |
| EPSS | 0.12% probability of exploitation · percentile 1.7% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-06 |