Vulnerabilidades en Pegasystems
44 resultadosAnálisis Vexday
Pegasystems acumula 43 vulnerabilidades registradas, com 6 classificadas como críticas, porém nenhuma sob ataque ativo confirmado no momento. A fraqueza dominante é XSS (CWE-79), padrão em plataformas web, e apenas 3 CVEs foram publicadas nos últimos 90 dias, indicando risco não-urgente mas que requer monitoramento de injeção em formulários e outputs.
CVE-2025-8681MEDIUMPega Platform versions 7.1.0 to Infinity 24.2.2 are affected by a Stored XSS issue in a user interface componentEPSS 0.2%CVE-2026-1562MEDIUMPega Platform versions 8.1.0 through 25.1.2 are affected by an Stored Cross-site scripting (XSS) vulnerability in a user interface component. Requires a high privileged user with a developer role.EPSS 0.2%CVE-2026-1563MEDIUMPega Platform versions 8.1.0 through 25.1.2 are affected by an Reflected Cross-site scripting (XSS) vulnerability in a user interface component. Requires a high privileged user with a developer role.EPSS 0.2%CVE-2023-26466HIGHA user with non-Admin access can change a configuration file on the client to modify the Server URL.EPSS 0.2%