Skip to main content
Loading…
    CVE-2026-37977 — A flaw was found in Keycloak. A remote attacker can exploit a Cross-Origin Resource Sharing (CORS) header injection vulnerability in Keycloak's User-Managed Access (UMA) token endpoint. This flaw occu — CVE Database · The Intelligence Room