-
Notifications
You must be signed in to change notification settings - Fork 8.7k
All issues
Issue creation is restricted in this repository
Issues
is:issue state:open
is:issue state:open
Search results
SCIM PATCH NPE when request body contains "schemas": null
kind/bugCategorizes a PR related to a bugCategorizes a PR related to a bugStatus: Open.SCIM PATCH does not enforce attribute mutability
kind/bugCategorizes a PR related to a bugCategorizes a PR related to a bugStatus: Open.Upgrade to 26.7.0 fails with preview features as the stateless cluster provider captures a null NodeInfo before postInit
kind/bugCategorizes a PR related to a bugCategorizes a PR related to a bugStatus: Open.SCIM filter parentPath not saved/restored in visitValuePath, breaks nested valuePath
kind/bugCategorizes a PR related to a bugCategorizes a PR related to a bugStatus: Open.Create a test that performs a implicit token request for TE delegation
area/testsuiteIndicates an issue on the Testsuite areaIndicates an issue on the Testsuite areaStatus: Open.Test Authentication fails after correcting LDAP connection URL until configuration is saved
kind/bugCategorizes a PR related to a bugCategorizes a PR related to a bugpriority/importantMust be worked on very soonMust be worked on very soonStatus: Open.[CVE-2026-17048] Keycloak Admin REST API Leaks Vault-Resolved Rotated Client Secrets
area/oidcIndicates an issue on OIDC areaIndicates an issue on OIDC areakind/cveIssues identified as CVEs on third-party dependencies, or issues which Keycloak is not affectedIssues identified as CVEs on third-party dependencies, or issues which Keycloak is not affectedpriority/importantMust be worked on very soonMust be worked on very soonStatus: Open.Partial evaluation misses ancestor group policies with extendChildren
priority/importantMust be worked on very soonMust be worked on very soonStatus: Open.Aggregate policy partial evaluation diverges from runtime semantics under FGAP v2
priority/importantMust be worked on very soonMust be worked on very soonStatus: Open.[CVE-2026-17059] Information disclosure: GET /roles/{role}/users returns user PII without the per-user view filter
kind/cveIssues identified as CVEs on third-party dependencies, or issues which Keycloak is not affectedIssues identified as CVEs on third-party dependencies, or issues which Keycloak is not affectedpriority/importantMust be worked on very soonMust be worked on very soonStatus: Open.Server info exposes database operational details to view-realm administrators
priority/importantMust be worked on very soonMust be worked on very soonStatus: Open.Organization invitation tokens carry arbitrary external redirect URLs
priority/importantMust be worked on very soonMust be worked on very soonStatus: Open.