THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-18573 (MEDIUM 6.5) — A flaw was found in the keycloak-services component of Keycloak, which is used for managing authentication and authorization flows. The issue occurs when a realm administrator configures client policies to enforce specific authentication requirements on confidential clients. Due

[NVD] CVE-2026-18573 (MEDIUM 6.5) — A flaw was found in the keycloak-services component of Keycloak, which is used for managing authentication and authorization flows. The issue occurs when a realm administrator configures client policies to enforce specific authentication requirements on confidential clients. Due

mednvdPublished 2026-08-02

CVE-2026-18573 CVSS: 6.5 MEDIUM Published: 2026-08-02T06:16:42.673

A flaw was found in the keycloak-services component of Keycloak, which is used for managing authentication and authorization flows. The issue occurs when a realm administrator configures client policies to enforce specific authentication requirements on confidential clients. Due to improper evaluation of the client state during an

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-18573