Vulnerabilities in Pegasystems
45 resultsVexday analysis
Pegasystems acumula 43 vulnerabilidades registradas, com 6 classificadas como críticas, porém nenhuma sob ataque ativo confirmado no momento. A fraqueza dominante é XSS (CWE-79), padrão em plataformas web, e apenas 3 CVEs foram publicadas nos últimos 90 dias, indicando risco não-urgente mas que requer monitoramento de injeção em formulários e outputs.
CVE-2026-1711MEDIUMPega Platform versions 8.1.0 through 25.1.1 are affected by a Stored Cross-Site Scripting vulnerability in a user interface component. Requires a high privileged user with a developer role.EPSS 0.2%CVE-2026-1564MEDIUMPega Platform versions 8.1.0 through 25.1.1 are affected by an HTML Injection vulnerability in a user interface component. Requires a high privileged user with a developer role.EPSS 0.2%CVE-2026-1562MEDIUMPega Platform versions 8.1.0 through 25.1.2 are affected by an Stored Cross-site scripting (XSS) vulnerability in a user interface component. Requires a high privileged user with a developer role.EPSS 0.2%CVE-2026-1563MEDIUMPega Platform versions 8.1.0 through 25.1.2 are affected by an Reflected Cross-site scripting (XSS) vulnerability in a user interface component. Requires a high privileged user with a developer role.EPSS 0.2%CVE-2023-26466HIGHA user with non-Admin access can change a configuration file on the client to modify the Server URL.EPSS 0.2%