What is CVE-2026-14337?
CVE-2026-14337 is a Stored Cross-Site Scripting (XSS) vulnerability identified in a user interface component of Pega Platform versions 23.1.0 through 25.1.3. It requires a high-privileged user with a developer role for exploitation. Affected systems should be updated with the vendor's security patch.
Azərbaycanca: CVE-2026-14337 Pega Platform-un 23.1.0-dan 25.1.3-ə qədər versiyalarında istifadəçi interfeysi komponentində aşkarlanmış Stored Cross-Site Scripting (XSS) zəifliyidir. Bu boşluq yüksək səlahiyyətli developer roluna malik istifadəçi tərəfindən istismar edilə bilər. Təsirə məruz qalan sistemlərdə vendor tərəfindən təqdim olunan təhlükəsizlik yeniləməsi tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-79
FAQ2
Which type of user can exploit CVE-2026-14337?
This Stored XSS vulnerability can only be exploited by a high-privileged user with a developer role.
Which versions of Pega Platform are affected by CVE-2026-14337?
The vulnerability affects Pega Platform versions 23.1.0 through 25.1.3.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.