Pega Infinity Improper Neutralization of Input During Web Page Generation (Stored Cross-site Scripting) Vulnerability - CVE-2020-8775 - Vulnerability Database
Pega Infinity Improper Neutralization of Input During Web Page Generation (Stored Cross-site Scripting) Vulnerability - CVE-2020-8775
High
Reference:
CVE-2020-8775
Title:
Pega Infinity Improper Neutralization of Input During Web Page Generation (Stored Cross-site Scripting) Vulnerability
Overview:
Pega Platform before version 8.2.6 is affected by a Stored Cross-Site Scripting (XSS) vulnerability in the comment tags.