Identity & Access Management · head-to-head
Cisco Duo vs Red Hat Keycloak
On-prem IAM/IGA/PAM/MFA: directories, federation, privileged access, SSO. Counts are scoped to this segment and the selected published-date window. Red Hat Keycloak carries 85.5× the disclosed CVE volume of Cisco Duo. Volume reflects disclosure practice and install base as much as code quality — read it with the severity mix. Sourced from the NIST NVD; lower counts indicate a smaller disclosed vulnerability surface — not necessarily lower risk.
Disclosure record
Bars are normalized per row to the larger value; the leading count is emphasized.
| Cisco Duo | Metric | Red Hat Keycloak | ||
|---|---|---|---|---|
| 2 | Total CVEs | 171 | ||
| 0 | Critical | 10 | ||
| 0 | High | 67 | ||
| 2 | Medium | 82 | ||
| 0 | Low | 12 | ||
| 2 | Open in latest | 130 |
Risk profile
Each severity band as a share of the vendor's own total — strips out raw volume so the profiles compare directly.
Cisco Duo
0.0% critical- Critical
- 00.0%
- High
- 00.0%
- Medium
- 2100.0%
- Low
- 00.0%
Red Hat Keycloak
5.8% critical- Critical
- 105.8%
- High
- 6739.2%
- Medium
- 8248.0%
- Low
- 127.0%
Recent activity
Latest in-window disclosures per vendor, newest first. Each ID links to its NVD record.
Cisco Duo
| CVE | Severity | CVSS | Published |
|---|---|---|---|
| CVE-2023-20207(opens NVD record) | Medium | 4.9 | Jul 12, 2023 |
| CVE-2021-1492(opens NVD record) | Medium | 6.6 | Mar 25, 2021 |
Red Hat Keycloak
| CVE | Severity | CVSS | Published |
|---|---|---|---|
| CVE-2026-16102(opens NVD record) | High | 8.1 | Aug 5, 2026 |
| CVE-2026-15573(opens NVD record) | High | 8.1 | Aug 5, 2026 |
| CVE-2026-16093(opens NVD record) | Medium | 5.4 | Jul 17, 2026 |
| CVE-2026-15945(opens NVD record) | Medium | 4.3 | Jul 16, 2026 |
| CVE-2026-28369(opens NVD record) | High | 8.7 | Mar 27, 2026 |
| CVE-2026-28368(opens NVD record) | High | 8.7 | Mar 27, 2026 |
Track new CVEs for these vendors
Get an email the moment a new vulnerability is disclosed for the products you rely on.