CVE-2026-9800: Red Hat Build Of Keycloak
High severity, CVSS 8.1. EPSS: 0.7% chance of exploitation in the next 30 days.
A flaw was found in Keycloak Policy Enforcer. This vulnerability allows any authenticated user to bypass all authorization policies, including role, scope, and User-Managed Access (UMA) permission checks. By including the configured access-denied page path within a request URL, either as a path segment or a query parameter, an attacker can gain unauthorized access to protected resources.
Affected products
- Red Hat Build Of Keycloak: from 26.4, before 26.4.13 (fixed in 26.4.13); from 26.6, up to and including 26.6.4
Published 2026-06-25. Last modified 2026-09-14.