VYPR
Medium severity6.5GHSA Advisory· Published Nov 25, 2024· Updated May 6, 2026

CVE-2024-10270

CVE-2024-10270

Description

A vulnerability was found in the Keycloak-services package. If untrusted data is passed to the SearchQueryUtils method, it could lead to a denial of service (DoS) scenario by exhausting system resources due to a Regex complexity.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.keycloak:keycloak-servicesMaven
< 24.0.924.0.9
org.keycloak:keycloak-servicesMaven
>= 25.0.0, < 26.0.626.0.6

Affected products

16

Patches

Vulnerability mechanics

References

10

News mentions

0

No linked articles in our index yet.