CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. It may be remotely exploitable.
CVE
CVE-2014-3709
Severity
HIGH
CVSS
8.8
EPSS
0.82%
Original NVD Description
The org.keycloak.services.resources.SocialResource.callback method in JBoss KeyCloak before 1.0.3.Final allows remote attackers to conduct cross-site request forgery (CSRF) attacks by leveraging lack of CSRF protection.
Related CVEs
Other vulnerabilities affecting the same vendor(s)