CVE-2026-1711: Pega Platform
Medium severity, CVSS 4.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Pega Platform versions 8.1.0 through 25.1.1 are affected by a Stored Cross-Site Scripting vulnerability in a user interface component. Requires a high privileged user with a developer role.
Affected products
- Pega Pega Platform: from 8.1, up to and including 25.1.1
Published 2026-04-15. Last modified 2026-06-17.