CVE-2023-4843: Pega Platform
Medium severity, CVSS 4.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Pega Platform versions 7.1 to 8.8.3 are affected by an HTML Injection issue with a name field utilized in Visual Business Director, however this field can only be modified by an authenticated administrative user.
Affected products
- Pega Pega Platform: from 7.1.0, up to and including 8.8.3
Published 2023-09-08. Last modified 2026-06-17.