# CVE-2022-34169 Fixing Vulnerability in Keycloak 15

**URL:** <https://forum.keycloak.org/t/cve-2022-34169-fixing-vulnerability-in-keycloak-15/17944>\
**Category:** Securing applications\
**Created:** [October 17, 2022, 12:17pm UTC](https://forum.keycloak.org/t/cve-2022-34169-fixing-vulnerability-in-keycloak-15/17944 "2022-10-17T12:17:32Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![ajaiswal595](https://yyz2.discourse-cdn.com/free1/user_avatar/forum.keycloak.org/ajaiswal595/32/6789_2.png) [@ajaiswal595](https://forum.keycloak.org/u/ajaiswal595)\
**Post date:** [October 17, 2022, 12:17pm UTC](https://forum.keycloak.org/t/cve-2022-34169-fixing-vulnerability-in-keycloak-15/17944/1 "2022-10-17T12:17:32Z")

</div>

All over the internet CVE-2022-34169, this vulnerability is poping up now.

In older Keycloak (JBoss server) one we are using xalan jar and it is dependent of many other libraries.

Does anyone know how to fix or remediate this vulnerability
