CVE-2025-62184: Pega Platform

Low severity, CVSS 3.4. EPSS: 0.3% chance of exploitation in the next 30 days.

Pega Platform versions 8.1.0 through 25.1.0 are affected by a Stored Cross-site Scripting vulnerability in a user interface component. Requires an administrative user and given extensive access rights, impact to Confidentiality is low and Integrity is none.

Affected products

  • Pega Pega Platform: from 8.1, up to and including 25.1.0

Published 2026-03-31. Last modified 2026-07-24.