A vulnerability, which was classified as critical, was found in Keycloak on Red Hat. Affected by this vulnerability is an unknown functionality of the file /admin/realms/{realm}/partialImport. Such manipulation leads to incorrect authorization.

This vulnerability is uniquely identified as CVE-2026-11577. The attack can be launched remotely. No exploit exists.