GHSA-2935-2WFM-HHPV Keycloak Denial of Service (DoS) Vulnerability via JWT Token Cache

A flaw was found in Keycloak. When the configuration uses JWT tokens for authentication, the tokens are cached until expiration. If a client uses JWT tokens with an excessively long expiration time, f ...

Continue Reading
GO-2025-3553 Excessive memory allocation during header parsing in github.com/golang-jwt/jwt

Excessive memory allocation during header parsing in...Read More ...

Continue Reading
Security Bulletin: IBM App Connect Enterprise Certified Container UBI updates

Summary IBM App Connect Enterprise Certified Container (ACEcc) is built on the Red Hat Universal Base Images. ACEcc operator versions 12.0.10 (LTS) and 12.10.0 contain fixes to the listed CVEs found i ...

Continue Reading
Keycloak Denial of Service (DoS) Vulnerability via JWT Token Cache

A flaw was found in Keycloak. When the configuration uses JWT tokens for authentication, the tokens are cached until expiration. If a client uses JWT tokens with an excessively long expiration time, f ...

Continue Reading
TeamPass 3.0.0.21 SQL Injection

TeamPass version 3.0.0.21 suffers from a remote SQL injection...Read More ...

Continue Reading
CVE-2025-30204

Last updated 24 March...Read More ...

Continue Reading
CVE-2025-2559

A flaw was found in Keycloak. When the configuration uses JWT tokens for authentication, the tokens are cached until expiration. If a client uses JWT tokens with an excessively long expiration time, f ...

Continue Reading
CVE-2025-2559

A flaw was found in Keycloak. When the configuration uses JWT tokens for authentication, the tokens are cached until expiration. If a client uses JWT tokens with an excessively long expiration time, f ...

Continue Reading

Back to Main

Subscribe for the latest news: