{"id":"CVE-2024-10492","title":"A vulnerability was found in Keycloak","summary":"A vulnerability was found in Keycloak. A user with high privileges could read sensitive information from a Vault file that is not within the expected context. This attacker must have previous high access to the Keycloak server in order t…","severity":"low","cvss":2.7,"cvssVector":"CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N","cwe":["CWE-73"],"vendor":"Red Hat","product":"keycloak","affected":["keycloak < 26.0.6","rhbk/keycloak-operator-bundle (all versions)","rhbk/keycloak-rhel9 (all versions)","rhbk/keycloak-rhel9-operator (all versions)","keycloak-quarkus-server","rhbk/keycloak-operator-bundle (all versions)","rhbk/keycloak-rhel9 (all versions)","rhbk/keycloak-rhel9-operator (all versions)","keycloak-quarkus-server","keycloak-quarkus-server","keycloak-quarkus-server","keycloak-quarkus-server"],"published":"2024-11-25","updated":"2026-09-21","sourceUpdated":"2026-09-21T06:16:58.803","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2024-10492","references":[{"url":"https://access.redhat.com/errata/RHSA-2024:10175","label":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2024:10176","label":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2024:10177","label":"secalert@redhat.com"},{"url":"https://access.redhat.com/errata/RHSA-2024:10178","label":"secalert@redhat.com"},{"url":"https://access.redhat.com/security/cve/CVE-2024-10492","label":"secalert@redhat.com"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2322447","label":"secalert@redhat.com"},{"url":"https://github.com/keycloak/keycloak/issues/35215","label":"secalert@redhat.com"},{"url":"https://github.com/keycloak/keycloak/pull/35223","label":"secalert@redhat.com"},{"url":"https://security.access.redhat.com/data/csaf/v2/vex/2024/cve-2024-10492.json"},{"url":"https://www.cve.org/CVERecord?id=CVE-2024-10492"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2024-10492"}],"tags":["nvd","cve.org","csaf","vex","red-hat"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2024-11-25T17:03:29.760705Z"},"epss":0.00712,"epssPercentile":0.51741,"ingestedAt":"2026-08-04T08:38:41.150Z","patched":["build_of_keycloak 24","build_of_keycloak 26.0","build_of_keycloak 24.0.9","build_of_keycloak 26.0.6"],"slug":"CVE-2024-10492","body":"## Overview\n\nA vulnerability was found in Keycloak. A user with high privileges could read sensitive information from a Vault file that is not within the expected context. This attacker must have previous high access to the Keycloak server in order to perform resource creation, for example, an LDAP provider configuration and set up a Vault read file, which will only inform whether that file exists or not.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.\n\n## Vendor advisories\n\n- **RHSA-2024:10175** · Red Hat · fixed in: Red Hat build of Keycloak 24 · released 2024-11-21 · [advisory](https://access.redhat.com/errata/RHSA-2024:10175)\n- **RHSA-2024:10177** · Red Hat · fixed in: Red Hat build of Keycloak 26.0 · released 2024-11-21 · [advisory](https://access.redhat.com/errata/RHSA-2024:10177)\n- **RHSA-2024:10176** · Red Hat · fixed in: Red Hat build of Keycloak 24.0.9 · released 2024-11-21 · [advisory](https://access.redhat.com/errata/RHSA-2024:10176)\n- **RHSA-2024:10178** · Red Hat · fixed in: Red Hat build of Keycloak 26.0.6 · released 2024-11-21 · [advisory](https://access.redhat.com/errata/RHSA-2024:10178)\n- **Red Hat VEX** · Low · affected: Red Hat Single Sign-On 7 · no fix planned: Red Hat Single Sign-On 7 · updated 2026-09-21 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2024/cve-2024-10492.json)","depth":"sunlit","depthScore":15,"depthScoreParts":{"impact":14.9,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}