CVE-2026-9795High· 7.3▾ TwilightKeycloak has privilege escalation via improper scope mapping enforcement
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 40.2 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 4.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via GHSA
0.3%
0.3% → 0.4%
A flaw was found in Keycloak's Fine-Grained Admin Permissions (FGAPv2) feature. An administrator with limited client management permissions can exploit this vulnerability to assign any realm role, including highly privileged roles, to a client's scope mapping. This bypasses intended security controls, allowing the injected role to be projected into a user's authentication token when they access the modified client. This could lead to unauthorized privilege escalation within the Keycloak realm.
org.keycloak:keycloak-services < 26.6.4Upgrade to a patched release:
org.keycloak:keycloak-services 26.6.4Connected by shared product, vendor, weakness, or advisory.
CVE-2026-2092High· 7.7Keycloak: Unauthorized access via improper validation of encrypted SAML assertions
CVE-2026-90997High· 7.4A flaw was found in Keycloak
CVE-2026-94425High· 8.8A vulnerability was found in Moore Threads MTT S80 Driver Package 340.150
CVE-2026-15467High· 8.1A flaw was found in the trustyai-service-operator's LMEvalJob controller
CVE-2026-94048Medium· 6.6A vulnerability was detected in CodeAstro QR Code Attendance Management System 1.0
CVE-2026-94047Medium· 6.3A security vulnerability has been detected in samanhappy MCPHub up to 1.0.32