A flaw was found in Keycloak before version 12.0.0 where it is possible to update the user's metadata attributes using Account REST API.…
redhat·CWE-250·Published 2021-05-28