Vulnerabilities
Vulnerable Software
Pega:  Security Vulnerabilities
Pega Platform versions 8.1.0 through 25.1.1 are affected by an HTML Injection vulnerability in a user interface component. Requires a high privileged user with a developer role.
CVSS Score
5.1
EPSS Score
0.0
Published
2026-04-15
Pega Platform versions 8.1.0 through 25.1.1 are affected by a Stored Cross-Site Scripting vulnerability in a user interface component. Requires a high privileged user with a developer role.
CVSS Score
4.8
EPSS Score
0.0
Published
2026-04-15
Pega Platform versions 8.1.0 through 25.1.0 are affected by a Stored Cross-site Scripting vulnerability in a user interface component. Requires an administrative user and given extensive access rights, impact to Confidentiality is low and Integrity is none.
CVSS Score
4.8
EPSS Score
0.0
Published
2026-03-31
Pega Platform versions 8.7.5 to Infinity 24.2.2 are affected by a Insecure Direct Object Reference issue in a user interface component that can only be used to read data.
CVSS Score
6.5
EPSS Score
0.0
Published
2025-10-16
Pega Platform versions 7.1.0 to Infinity 24.2.2 are affected by a Stored XSS issue in a user interface component.  Requires a high privileged user with a developer role.
CVSS Score
5.5
EPSS Score
0.0
Published
2025-09-10
Pega Platform versions 8.4.3 to Infinity 24.2.1 are affected by an XSS issue with Mashup
CVSS Score
8.1
EPSS Score
0.002
Published
2025-04-14
Pega Platform versions 7.2.1 to Infinity 24.2.1 are affected by an XSS issue with Mashup
CVSS Score
7.1
EPSS Score
0.004
Published
2025-04-14
Pega Platform versions 8.1 to Infinity 24.2.0 are affected by an Stored XSS issue with profile.
CVSS Score
5.4
EPSS Score
0.002
Published
2025-01-13
Pega Platform versions 8.1 to Infinity 24.2.0 are affected by an XSS issue with search.
CVSS Score
5.9
EPSS Score
0.003
Published
2024-12-05
Pega Platform versions 6.x to Infinity 24.1.1 are affected by an issue with Improper Control of Generation of Code
CVSS Score
9.1
EPSS Score
0.005
Published
2024-11-20


Contact Us

Shodan ® - All rights reserved