CVE-2024-10716: Pega Infinity
Medium severity, CVSS 4.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Pega Platform versions 8.1 to Infinity 24.2.0 are affected by an XSS issue with search.
Affected products
- Pega Infinity: from 8.1, up to and including 8.8.5; from 23.1, before 23.1.4 (fixed in 23.1.4); from 24.1, before 24.1.2 (fixed in 24.1.2); version 24.2 only
Published 2024-12-05. Last modified 2026-06-17.