Skip to content

Keycloak: Improper Access Control Leading to MFA Deletion and Account Takeover in Keycloak Account REST API

Moderate severity GitHub Reviewed Published Mar 11, 2026 to the GitHub Advisory Database • Updated Mar 12, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts