VYPR

Camel Keycloak Component

by Apache

CVEs (1)

  • CVE-2026-46455Jul 6, 2026
    risk 0.00cvss epss 0.00

    Insufficient Session Expiration vulnerability in Apache Camel Keycloak Component. The camel-keycloak security helper KeycloakSecurityHelper.parseAndVerifyAccessToken builds a Keycloak TokenVerifier using withChecks(...) with only the subject-exists check and the realm-URL…