THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-16104 (MEDIUM 4.3) — A flaw was found in the authentication configuration endpoint of the keycloak-services component, which is the core engine for Red Hat Build of Keycloak identity and access management. The issue occurs because the system fails to mask sensitive configuration values, such as reCAP

[NVD] CVE-2026-16104 (MEDIUM 4.3) — A flaw was found in the authentication configuration endpoint of the keycloak-services component, which is the core engine for Red Hat Build of Keycloak identity and access management. The issue occurs because the system fails to mask sensitive configuration values, such as reCAP

lownvdPublished 2026-07-17

CVE-2026-16104 CVSS: 4.3 MEDIUM Published: 2026-07-17T17:17:14.393

A flaw was found in the authentication configuration endpoint of the keycloak-services component, which is the core engine for Red Hat Build of Keycloak identity and access management. The issue occurs because the system fails to mask sensitive configuration values, such as reCAPTCHA secret keys, when they are requested by adminis

MITRE ATT&CK techniques

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-16104