CVE-2025-68833CWE-1240

CVE-2025-68833

Medium · published August 24, 2026

CVSS v3.1
5.3
EPSS
0%
Percentile
4.8
In the wild
Unconfirmed
What it is

HCL Hive Keycloak IAM Instance is affected by insufficient granularity of access control which could allow an attacker unauthorized access to resources.

The record
Technical detail
CVSS v3.1
5.3 · MEDIUM
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS v4.0
Not supplied
EPSS
0.00153 · 4.8th percentile
Weakness
CWE-1240 · Use of a Cryptographic Primitive with a Risky Implementation
Published
2026-08-24T18:16Z
References (1)
EPSS history
Timeline
  • 26 AUG 07:20Z
    EPSS moved — → 0%
    epss
  • 24 AUG 13:42Z
    HCL Hive is affected by use of a cryptographic primitive with a risky implementation
    cvelistv5