CVE-2026-10754
Pega Platform versions 8.5.0 through 25.1.2 are affected by an improper validation of cryptographic signatures that may allow an attacker to bypass security controls.
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Pega Platform versions 8.5.0 through 25.1.2 are affected by an improper validation of cryptographic signatures that may allow an attacker to bypass security controls.
| CWE | CWE-347 |
| Vendor | pegasystems |
| Product | pega infinity |
| Published | Aug 10, 2026 |
Stay Ahead of the Next One
Get instant alerts for pegasystems pega infinity
Be the first to know when new unknown vulnerabilities affecting pegasystems pega infinity are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Pegasystems / Pega Infinity
8.5.0 < Infinity 25.1.3
References
Credits
Yannick Scheepers, independent ethical hacker/security researcher