SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-1562

MEDIUM · CVSS 4.8 EPSS 0.17%

Source: NVD + CISA KEV + EPSS · Published 2026-07-15 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

The vulnerability affects the Pega Platform versions 8.1.0 through 25.1.2, allowing stored cross-site scripting (XSS) attacks through a user interface component, but only when exploited by a high-privileged user with a developer role. Successful exploitation could lead to unauthorized access to sensitive information or manipulation of the application. Organizations utilizing these versions of the Pega Platform, particularly those with developer roles, should prioritize remediation to mitigate potential risks.

CVE
CVE-2026-1562
Severity
MEDIUM
CVSS
4.8
EPSS
0.17%

Original NVD Description

Pega Platform versions 8.1.0 through 25.1.2 are affected by an Stored Cross-site scripting (XSS) vulnerability in a user interface component. Requires a high privileged user with a developer role.

Related CVEs

Other vulnerabilities affecting the same vendor(s)