CVE-2025-12789: Red Hat Single Sign-On 7
Medium severity, CVSS 6.1. EPSS: 0.2% chance of exploitation in the next 30 days.
A flaw was found in Red Hat Single Sign-On. This issue is an Open Redirect vulnerability that occurs during the logout process. The redirect_uri parameter associated with the openid-connect logout protocol does not properly validate the provided URL.
Affected products
- Red Hat Red Hat Single Sign-On 7
Published 2025-11-07. Last modified 2026-10-07.