CVE-2026-13761

Summary

Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.

Affected Software

VendorProductVersion RangeStatus
PegasystemsPega Infinity7.1.0 < Infinity 25.1.3affected

Weaknesses

  • CWE-606: CWE-606: Unchecked Input for Loop Condition

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References