Red Hat JBoss EAP Expansion Pack Status in CVE-2026-18963
The Red Hat JBoss Enterprise Application Platform Expansion Pack was initially listed as affected by CVE-2026-18963, but later revisions left its status…
The Red Hat JBoss Enterprise Application Platform Expansion Pack was initially listed as affected by CVE-2026-18963, but later revisions left its status…
Red Hat and the Keycloak project have released patches for a critical vulnerability, CVE-2026-18963, that could let unauthenticated attackers take over any…
CVE-2026-18963 was identified as a relevant cybersecurity entity in recently ingested reporting. This profile is generated so related cyber news, CVEs, malware,…
The Keycloak project released version 26.7.2 fixing CVE-2026-18963 and CVE-2026-15571, along with other security improvements. Users are urged to upgrade promptly.
Keycloak is an open-source identity and access management server. Versions prior to 26.7.2 are vulnerable to CVE-2026-18963, a critical account takeover flaw.
Red Hat's distribution of Keycloak is affected by CVE-2026-18963. Fixed versions include 26.4.15 and 26.6.6, with errata released on August 18, 2026.
The initial CVE record listed Red Hat Single Sign-On 7 as unaffected, but later revisions narrowed the product list, leaving its current…
Red Hat, as the CNA for CVE-2026-18963, released patches for its Keycloak builds and issued multiple errata. The company also provided temporary…