CVE-2026-18570 | Red Hat Build of Keycloak keycloak-services fullScopeAllowed improper authorization

SecurityVulns

A vulnerability, which was classified as critical, has been found in Red Hat Build of Keycloak. The impacted element is an unknown function of the component keycloak-services. The manipulation of the argument fullScopeAllowed leads to improper authorization.

This vulnerability is uniquely identified as CVE-2026-18570. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More