Skip to content

CVE-2026-23552

CVE

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
February 23, 2026
Last Seen
February 24, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

CVE-2026-23552 identifies a critical vulnerability in the KeycloakSecurityPolicy of the Apache Camel Keycloak component. This flaw allows a Cross-Realm Token Acceptance Bypass, where JWT tokens from one Keycloak realm are accepted by a policy configured for a different realm, compromising tenant iso...

Public Exploits

Checking GitHub for proof-of-concept code…