CyberRota
Back to database

CVE-2026-7307

HIGH · CVSS 7.5 EPSS 0.73%

Source: NVD + CISA KEV + EPSS · Published: 2026-05-19 · Last synced: 2026-06-17

CyberRota Analysis

Uzaktan istismar edilebilir olabilir.

CVE
CVE-2026-7307
Severity
HIGH
CVSS
7.5
EPSS
0.73%

Original NVD Description

A flaw was found in Keycloak. A remote, unauthenticated attacker can send a specially crafted XML input to the Security Assertion Markup Language (SAML) endpoint. This malicious input can cause high CPU usage and worker thread starvation, leading to a Denial of Service (DoS) where the server becomes unavailable.