Pega Infinity Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2024-6702 - Vulnerability Database

Pega Infinity Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2024-6702

Medium
Reference: CVE-2024-6702
Title: Pega Infinity Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

Pega Platform versions 8.1 to Infinity 24.1.2 are affected by an HTML Injection issue with Stage.