CVE-2023-32087: XSS
Published Oct 18, 2023
·Updated
Pega Platform versions 8.1 to Infinity 23.1.0 are affected by an XSS issue with task creation
Affected Software
2 affected components
Pega Platform>=8.1.0<8.7.5
Pega Platform>=8.8.0<8.8.3
Event History
Oct 18, 2023
CVE Published
via MITRE·11:39 AM
Data Sourced
via MITRE·11:39 AM
DescriptionSeverityWeakness
Data Sourced
12:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-32087?
The severity of CVE-2023-32087 is medium.
2
Which versions of Pega Platform are affected by CVE-2023-32087?
Pega Platform versions 8.1 to Infinity 23.1.0 are affected by CVE-2023-32087.
3
What is the CWE of CVE-2023-32087?
The CWE of CVE-2023-32087 is CWE-79.
4
How can I fix CVE-2023-32087?
To fix CVE-2023-32087, upgrade to a version of Pega Platform higher than 8.1.0 and lower than 8.7.5, or higher than 8.8.0 and lower than 8.8.3.
5
Where can I find more information about CVE-2023-32087?
More information about CVE-2023-32087 can be found at the following link: [https://support.pega.com/support-doc/pega-security-advisory-e23-vulnerability-remediation-note](https://support.pega.com/support-doc/pega-security-advisory-e23-vulnerability-remediation-note)