Keycloak 26.6.4 and 26.7.0 are available (security updates)
Keycloak 26.6.4 and 26.7.0 are available (security updates)
Keycloak 26.6.4 and Keycloak 26.7.0 are available on Clever Cloud. Keycloak 26.6.4 addresses eight security vulnerabilities: CVE-2026-9099, CVE-2026-9083, CVE-2026-9086, CVE-2026-9705, CVE-2026-9795, CVE-2026-9799, CVE-2026-9800 and CVE-2026-11800.
Keycloak 26.7.0 fixes four additional vulnerabilities: CVE-2026-9796, CVE-2026-9689, CVE-2026-9798 and CVE-2026-11986. It also promotes the SCIM API to preview, adds a preview of simplified multi-cluster high availability without external caches and supports step-up authentication for SAML clients.
You can update through the add-on’s dashboard in the Clever Cloud Console. You can also set CC_KEYCLOAK_VERSION of the underlying Java application to 26.7.0 and rebuild it, or use Clever Tools:
clever features enable operators
clever keycloak version check yourKeycloakNameOrId
clever keycloak version update yourKeycloakNameOrId
clever keycloak version update yourKeycloakNameOrId 26.7.0Last updated on

