Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-3501


A flaw was found in Keycloak. By setting a verification policy to 'ALL', the trust store certificate verification is skipped, which is unintended.


Published

2025-04-29T21:15:51.523

Last Modified

2025-08-07T13:15:36.340

Status

Awaiting Analysis

Source

[email protected]

Severity

CVSSv3.1: 8.2 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-297

Affected Vendors & Products

-


References