Skip to content

[GHSA-rhgq-f8x5-j2jc] Keycloak's identity-first login flow exposes user information#7341

Closed
dnegreira wants to merge 1 commit into
dnegreira/advisory-improvement-7341from
dnegreira-GHSA-rhgq-f8x5-j2jc
Closed

[GHSA-rhgq-f8x5-j2jc] Keycloak's identity-first login flow exposes user information#7341
dnegreira wants to merge 1 commit into
dnegreira/advisory-improvement-7341from
dnegreira-GHSA-rhgq-f8x5-j2jc

Conversation

@dnegreira
Copy link
Copy Markdown

Updates

  • Affected products

Comments
The fix commit has been made yesterday into the release/26.6 branch in upstream keycloak - I am expecting that next version 26.6.1 has the fix

keycloak/keycloak@b4558a8

@github-actions github-actions Bot changed the base branch from main to dnegreira/advisory-improvement-7341 April 9, 2026 07:30
@dnegreira dnegreira closed this Apr 9, 2026
@github-actions github-actions Bot deleted the dnegreira-GHSA-rhgq-f8x5-j2jc branch April 9, 2026 07:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant