CVE-2026-13761CWE-606

CVE-2026-13761

published August 28, 2026

CVSS
8.8
EPSS
0%
Percentile
16.6
In the wild
Unconfirmed
What it is

Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.

The record
Technical detail
CVSS
8.8 · NONE
CVSS v4.0
8.8 · CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:L
EPSS
0.00253 · 16.6th percentile
Weakness
CWE-606 · Unchecked Input for Loop Condition
Published
2026-08-28T20:17Z
References (1)
EPSS history
Timeline
  • 30 AUG 16:16Z
    EPSS moved — → 0%
    epss
  • 28 AUG 13:11Z
    Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.
    cvelistv5