Pega Infinity Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2024-10716 - Vulnerability Database

Pega Infinity Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2024-10716

Medium
Reference: CVE-2024-10716
Title: Pega Infinity Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

Pega Platform versions 8.1 to Infinity 24.2.0 are affected by an XSS issue with search.