[keycloak-dev] CVE-2019-3875- Keycloak X.509 Authenticator Man-In-The-Middle Weak Authentication

Shiva Prasad Thagadur Prakash shiva.prasad.thagadur.prakash at ericsson.com
Tue Aug 13 10:41:06 EDT 2019


Hi Guys,
Is this CVE already fixed in keycloak version 6.0.1? The CVE
description says vulnerable upto 6.0.2 and the redhat link https://bugz
illa.redhat.com/show_bug.cgi?id=1690628 says fixed in version 6.0.2.
But we couldn't find keycloak version 6.0.2?

Thanks,
Shiva 



More information about the keycloak-dev mailing list