cbcvebase.
CVE-2020-1717
published 2021-02-11

CVE-2020-1717: A flaw was found in Keycloak 7.0.1. A logged in user can do an account email enumeration attack.

low2.7CVSS 3.1
AVNACLPRHUINSUCLINAN
A flaw was found in Keycloak 7.0.1. A logged in user can do an account email enumeration attack.

Affected

4 ranges
VendorProductVersion rangeFixed in
redhatjboss_fuse
redhatkeycloak
redhatkeycloak
redhatsingle_sign-on