CVE-2024-1722
A flaw was found in Keycloak. In certain conditions, this issue may allow a remote unauthenticated attacker to block other accounts from logging in.
Scoring
- Severity
- LOW
- CVSS base score
- 3.7
- CVSS vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
- EPSS probability
- 0.77%
- CWE
- CWE-645
- Published
- 2024-02-27
- Last modified
- 2026-03-13
Weakness type
Related vulnerabilities
- CVE-2026-53982 — Cap-go Console < 12.28.2 Account Deletion DoS via Device Identifier Association
- CVE-2026-25907 — Dell PowerScale OneFS, version 9.13.0.0, contains an overly restrictive account lockout mechanism...
- CVE-2025-5241 — Denial-of-Service Vulnerability in MELSEC iQ-F Series
- CVE-2025-31947 — Repeated LDAP login failures can lock an LDAP account
- CVE-2024-37028 — BIG-IP Next Central Manager vulnerability
- CVE-2023-4346