highCVSS 7.3Vulnerability

CVE-2026-9795

### Description A flaw was found in Keycloak's Fine-Grained Admin Permissions (FGAPv2) feature. An administrator with limited client management permissions can exploit this vulnerability to assign any realm role, including highly privileged roles, to a client's scope mapping. This bypasses intended security controls, allowing the injected role to be projected into a user's authentication token when they access the modified client. This could lead to unauthorized privilege escalation within the Keycloak realm.

Properties

severity
high
summary
Keycloak has privilege escalation via improper scope mapping enforcement
epss_score
0.00354
cvss_score
7.3
ghsa_published
2026-07-01T21:20:38Z
source_url
https://github.com/advisories/GHSA-32h4-44jj-c5vx
ghsa_updated
2026-07-01T21:20:41Z
ghsa_id
GHSA-32h4-44jj-c5vx
cve_id
CVE-2026-9795
cvss_vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:N
is_ghsa_only
false
epss_percentile
0.28544

Related Entities (5)

ENRICHED_BY (1)

[Source]FIRST EPSS

VULNERABLE_TO (1)

[Software]maven/org.keycloak:keycloak-services

AFFECTS (1)

[Software]maven/org.keycloak:keycloak-services

HAS_WEAKNESS (1)

[Weakness]Incorrect Privilege Assignment

REPORTED_BY (1)

[Source]GitHub Advisory Database

Explore deeper with Ninja Signal's threat intelligence graph