CVE-2025-23368
Red Hat Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7, Red Hat JBoss Enterprise Application Platform 8.1, Red Hat JBoss Enterprise Application Platform 8.1 for RHEL 8
A flaw was found in Wildfly Elytron integration. The component does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it more susceptible to brute force attacks via CLI.
- CVSS
- 8.1
- EPSS
- 0.85% 54.7% percentile
- CISA KEV
- Not listed
- Published
- 2025.03.05