Stored XSS Vulnerability in Pega Platform Versions 8.1 to Infinity 24.2.0
CVE-2024-12211
5.4MEDIUM
What is CVE-2024-12211?
Pega Platform versions 8.1 to Infinity 24.2.0 are vulnerable to a Stored XSS issue related to user profiles. This vulnerability can allow an attacker to inject malicious scripts into web pages viewed by other users, potentially leading to unauthorized actions and data exposure. It's essential for users of affected versions to apply security updates and remediation measures as advised in Pega's security advisory.
Affected Version(s)
Pega Infinity 8.1 < 24.2.1
