Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
CVE-2025-14082
CVE-2025-14082
A flaw was found in Keycloak Admin REST (Representational State Transfer) API. This vulnerability allows information disclosure of sensitive role metadata via insufficient authorization checks on the /admin/realms/{realm}/roles endpoint.
Published Dec 11, 2025
https://bugzilla.redhat.com/show_bug.cgi?id=2419078
https://github.com/advisories/GHSA-6q37-7866-h27j
CVSS Score
Low
2.7
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.10.redhat-00002
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.11.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.12.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.13.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.14.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.4.redhat-00002
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.5.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.6.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.7.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.8.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.2.9.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.4.10.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.4.2.redhat-00002
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.4.4.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.4.5.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.4.6.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.4.7.redhat-00001
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.4.8.redhat-00002
maven
org.keycloak.testsuite/integration-arquillian-servers-auth-server-quarkus
26.4.9.redhat-00001
maven
org.keycloak/keycloak-model-jpa
26.2.0
maven
org.keycloak/keycloak-model-jpa
26.2.1
maven
org.keycloak/keycloak-model-jpa
26.2.2
maven
org.keycloak/keycloak-model-jpa
26.2.3
maven
org.keycloak/keycloak-model-jpa
26.2.4
maven
org.keycloak/keycloak-model-jpa
26.2.5
maven
org.keycloak/keycloak-model-jpa
26.3.0
maven
org.keycloak/keycloak-model-jpa
26.3.1
maven
org.keycloak/keycloak-model-jpa
26.3.2
maven
org.keycloak/keycloak-model-jpa
26.3.3
maven
org.keycloak/keycloak-model-jpa
26.3.4
maven
org.keycloak/keycloak-model-jpa
26.3.5
maven
org.keycloak/keycloak-model-jpa
26.4.0
maven
org.keycloak/keycloak-model-jpa
26.4.1
maven
org.keycloak/keycloak-model-jpa
26.4.2
maven
org.keycloak/keycloak-model-jpa
26.4.3
maven
org.keycloak/keycloak-model-jpa
26.4.4
maven
org.keycloak/keycloak-model-jpa
26.4.5
maven
org.keycloak/keycloak-model-jpa
26.4.6
maven
org.keycloak/keycloak-model-jpa
26.4.7
maven
org.keycloak/keycloak-model-jpa
26.2.10.redhat-00002
maven
org.keycloak/keycloak-model-jpa
26.2.11.redhat-00001
maven
org.keycloak/keycloak-model-jpa
26.2.12.redhat-00001
maven
org.keycloak/keycloak-model-jpa
26.2.13.redhat-00001
maven
org.keycloak/keycloak-model-jpa
26.2.14.redhat-00001
maven
org.keycloak/keycloak-model-jpa
26.2.4.redhat-00002
maven
org.keycloak/keycloak-model-jpa
26.2.5.redhat-00001
maven
org.keycloak/keycloak-model-jpa
26.2.6.redhat-00001
maven
org.keycloak/keycloak-model-jpa
26.2.7.redhat-00001
maven
org.keycloak/keycloak-model-jpa
26.2.8.redhat-00001
maven
org.keycloak/keycloak-model-jpa
26.2.9.redhat-00001
1-50 of 97
CVE-2025-14082 | Components Impacted | Sonatype Guide | Sonatype Guide