Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
keycloak — Security research disclosing CVE-2026-9794, an unauthenticated client ID enumeration flaw in Keycloak SAML ECP via faultstring oracle, fixed in 26.6.3. | Kitploit
Tools/GitHubGitHub/muhammedhussein17/keycloak
Identity ManagementVulnerability AnalysisInformation GatheringWeb SecurityAuthenticationPapers & Research
GitHubmuhammedhussein17/keycloak

keycloak

Security research disclosing CVE-2026-9794, an unauthenticated client ID enumeration flaw in Keycloak SAML ECP via faultstring oracle, fixed in 26.6.3.

View Repository
3 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2026-9794 — Keycloak SAML ECP Client Enumeration

Security research leading to CVE-2026-9794 (CVSS 5.3, Medium).

Summary

Unauthenticated client ID enumeration via SAML ECP faultstring oracle in Keycloak 2.0 through 26.6.1. Fixed in 26.6.3.

Findings

  • VULN-001: Client ID enumeration (CVE-2026-9794) ✅ Fixed
  • VULN-002: Response format oracle — #49022
  • VULN-003: Version fingerprinting
  • VULN-004: SSRF via request_uri — Fixed in 26.6.1

Researcher

Muhammed Hussein & Asaad Mostafa

Download Tool