CVE-2025-12789: Red Hat Single Sign-On 7

Medium severity, CVSS 6.1. EPSS: 0.2% chance of exploitation in the next 30 days.

A flaw was found in Red Hat Single Sign-On. This issue is an Open Redirect vulnerability that occurs during the logout process. The redirect_uri parameter associated with the openid-connect logout protocol does not properly validate the provided URL.

Affected products

Published 2025-11-07. Last modified 2026-10-07.