WRITEUP #1292
User impersonation via stolen UUID code in KeyCloak (CVE-2023-0264)
OAuthOIDCPrivilege escalationBroken authentication
byJordi Zayuelas i Muñoz
Program
Keycloak
Published
Apr 14, 2023
Added to HackDex
Apr 28, 2023
Read Full Writeuphttps://www.offensity.com/en/blog/user-impersonation-via-stolen-uuid-code-in-keycloak-cve-2023-0264/