CVE-2025-9559
16.10.2025, 16:15
Pega Platform versions 8.7.5 to Infinity 24.2.2 are affected by a Insecure Direct Object Reference issue in a user interface component that can only be used to read data.Enginsight
| Vendor | Product | Version |
|---|---|---|
| pega | pega_platform | 7.1.0 ≤ 𝑥 < 23.1.5 |
| pega | pega_platform | 24.1.0 ≤ 𝑥 ≤ 24.1.3 |
| pega | pega_platform | 24.2.0 ≤ 𝑥 ≤ 24.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration