Duplicate Advisory: Keycloak LDAP User Federation provider enables admin-triggered untrusted Java deserialization Moderate severity GitHub Reviewed Published last month to the GitHub Advisory Database ...
Currently, for the serialization and deserialization strategy of the signature, in the reference implementation, we are using serde derivation pipeline: For consistency, we need to have the same ...