A vulnerability has been identified in Keycloak that could lead to unauthorized information disclosure. While it requires an already authenticated user, the /admin/serverinfo endpoint can inadvertently provide sensitive environment information.
2025-06-20T16:15:29.553
2025-08-13T13:44:11.040
Analyzed
CVSSv3.1: 2.7 (LOW)