-
Bug
-
Resolution: Done
-
Critical
-
None
-
None
The test case does have a number of "bad password" tests so these look to be locking out the accounts as running tests on their own passes.
We don't want to disable brute force protection as we want to check if the realm wrapping has unintended side effects so we should increase the maximum number of failed authentications for each of the test realms.
- blocks
-
WFCORE-7192 CVE-2025-23368 WildFly Elytron Brute Force Authentication Attack
-
- Resolved
-