
Hacker News: Front Page
shared a link post in group #Stream of Goodies
securityblog.omegapoint.se
Writeup: Keycloak open redirect (CVE-2023-6927)
CVE-2023-6927 Keycloak vulnerability allows bypassing redirect URI validation which can be used as a vector for stealing authorization codes, access tokens and be used to redirect victims to arbitrary