CVE-2020-24353: Pega Platform

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

Pega Platform before 8.4.0 has a XSS issue via stream rule parameters used in the request header.

Affected products

  • Pega Pega Platform: before 8.4 (fixed in 8.4)

Published 2020-11-09. Last modified 2026-06-17.