Hi ,
We have run a vulnerability assessment against our system using Keycloak.
It found multiple cases under the same weakness,
Path Normalization Conflict
such as
/auth/resources/127q2/login/primehub/img/..;/img/primehub.svg
auth/resources/127q2/admin/keycloak/node_modules/angular-cookies/..;/angular-cookies/angular-cookies.min.js
I wonder if it is a known issue of Keycloak, or if there is a way I can eliminate these weakness by configuration ?
Thank you.
Best Regards,
Gabriel