Medium severity6.4NVD Advisory· Published Jun 22, 2020· Updated Jun 17, 2026
CVE-2020-1727
CVE-2020-1727
Description
A vulnerability was found in Keycloak before 9.0.2, where every Authorization URL that points to an IDP server lacks proper input validation as it allows a wide range of characters. This flaw allows a malicious to craft deep links that introduce further attack scenarios on affected clients.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Keycloak/Keycloakdescription
Patches
Vulnerability mechanics
References
1- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.