Vulnerabilities
Vulnerable Software
Pega:  Security Vulnerabilities
Pega Platform versions 8.7.5 to Infinity 24.2.2 are affected by a Insecure Direct Object Reference issue in a user interface component that can only be used to read data.
CVSS Score
6.5
EPSS Score
0.0
Published
2025-10-16
Pega Platform versions 7.1.0 to Infinity 24.2.2 are affected by a Stored XSS issue in a user interface component.  Requires a high privileged user with a developer role.
CVSS Score
5.5
EPSS Score
0.0
Published
2025-09-10
Pega Platform versions 8.4.3 to Infinity 24.2.1 are affected by an XSS issue with Mashup
CVSS Score
8.1
EPSS Score
0.0
Published
2025-04-14
Pega Platform versions 7.2.1 to Infinity 24.2.1 are affected by an XSS issue with Mashup
CVSS Score
7.1
EPSS Score
0.0
Published
2025-04-14
Pega Platform versions 8.1 to Infinity 24.2.0 are affected by an Stored XSS issue with profile.
CVSS Score
5.4
EPSS Score
0.001
Published
2025-01-13
Pega Platform versions 8.1 to Infinity 24.2.0 are affected by an XSS issue with search.
CVSS Score
5.9
EPSS Score
0.001
Published
2024-12-05
Pega Platform versions 6.x to Infinity 24.1.1 are affected by an issue with Improper Control of Generation of Code
CVSS Score
9.1
EPSS Score
0.004
Published
2024-11-20
Pega Platform versions 8.1 to Infinity 24.1.2 are affected by an HTML Injection issue with Stage.
CVSS Score
5.2
EPSS Score
0.001
Published
2024-09-12
Pega Platform versions 8.1 to Infinity 24.1.2 are affected by an XSS issue with App name.
CVSS Score
5.5
EPSS Score
0.001
Published
2024-09-12
Pega Platform versions 8.1 to Infinity 24.1.2 are affected by an XSS issue with case type.
CVSS Score
5.5
EPSS Score
0.001
Published
2024-09-12


Contact Us

Shodan ® - All rights reserved