A vulnerability marked as critical has been reported in Red Hat Keycloak. The impacted element is an unknown function of the component SAML Broker. Performing a manipulation results in authentication bypass by capture-replay.

This vulnerability is identified as CVE-2026-18967. The attack can be initiated remotely. There is not any exploit available.