RHSA-2025:11645MediumCVSS 7.1
Red Hat Security Advisory: Red Hat Single Sign-On 7.6.12 security update
🔗 CVE IDs covered (2)
CVE-2024-10039 · pendingCVE-2024-10234 →
📋 Description
CVE-2024-10039 — keycloak-core: mTLS passthrough CVE-2024-10234 — wildfly: Wildfly vulnerable to Cross-Site Scripting (XSS)
🎯 Affected products1
- Red Hat Single Sign-On 7
✅ Remediation
Before applying the update, back up your existing installation, including all applications, configuration files, databases and database settings, and so on. The References section of this erratum contains a download link (you must log in to download the update).