THREAT OPS › Threat News › [NVD] CVE-2026-16104 (MEDIUM 4.3) — A flaw was found in the authentication configuration endpoint of the keycloak-services component, which is the core engine for Red Hat Build of Keycloak identity and access management. The issue occurs because the system fails to mask sensitive configuration values, such as reCAP
[NVD] CVE-2026-16104 (MEDIUM 4.3) — A flaw was found in the authentication configuration endpoint of the keycloak-services component, which is the core engine for Red Hat Build of Keycloak identity and access management. The issue occurs because the system fails to mask sensitive configuration values, such as reCAP
CVE-2026-16104 CVSS: 4.3 MEDIUM Published: 2026-07-17T17:17:14.393
A flaw was found in the authentication configuration endpoint of the keycloak-services component, which is the core engine for Red Hat Build of Keycloak identity and access management. The issue occurs because the system fails to mask sensitive configuration values, such as reCAPTCHA secret keys, when they are requested by adminis
MITRE ATT&CK techniques
- CredentialsT1589.001
Indicators of compromise
- CVE-2026-16104cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-16104