org.keycloak:keycloak-server-spi-private@26.3.3 vulnerabilities

  • latest version

    26.3.3

  • first published

    8 years ago

  • latest version published

    1 months ago

  • licenses detected

  • package registry

  • Direct Vulnerabilities

    Known vulnerabilities in the org.keycloak:keycloak-server-spi-private package. This does not include vulnerabilities belonging to this package’s dependencies.

    How to fix?

    Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

    Fix for free
    VulnerabilityVulnerable Version
    • M
    CRLF Injection

    org.keycloak:keycloak-server-spi-private is an open source identity and access management solution for modern applications and services.

    Affected versions of this package are vulnerable to CRLF Injection during the e-mail registration. An attacker can cause the system to send unsolicited emails limited to 64 characters by injecting special characters into the email input field.

    How to fix CRLF Injection?

    There is no fixed version for org.keycloak:keycloak-server-spi-private.

    [0,)