A vulnerability was found in the Keycloak-services package. If untrusted data is passed to the SearchQueryUtils method, it could lead to a denial of service (DoS) scenario by exhausting system resources due to a Regex complexity.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| org.keycloak:keycloak-services(Maven) | 0 | 24.0.9 | N/A |
| org.keycloak:keycloak-services(Maven) | 25.0.0 | 26.0.6 | N/A |
CVSS Metrics