RHSA-2025:8672HighCVSS 8.2

Red Hat Security Advisory: Red Hat build of Keycloak 26.2.5 Images Security Update

Published
June 9, 2025
Last Modified
July 22, 2026

🔗 CVE IDs covered (2)

📋 Description

CVE-2024-47072 — com.thoughtworks.xstream: XStream is vulnerable to a Denial of Service attack due to stack overflow from a manipulated binary input stream CVE-2025-3501 — org.keycloak.protocol.services: Keycloak hostname verification

🔗 References (3)