CVE-2024-12211: Pega Platform

Medium severity, CVSS 5.4. EPSS: 0.3% chance of exploitation in the next 30 days.

Pega Platform versions 8.1 to Infinity 24.2.0 are affected by an Stored XSS issue with profile.

Affected products

  • Pega Pega Platform: from 8.1, before 23.1.4 (fixed in 23.1.4); from 24.1.0, before 24.1.2 (fixed in 24.1.2); version 24.2.0 only

Published 2025-01-13. Last modified 2026-06-17.