Known Vulnerabilities
CVE-2021-27654
Forgotten password reset functionality for local accounts can be used to bypass local authentication checks.
HIGH
CVSS 8.8
Published Jan 28, 2022
CVE-2021-27651
In versions 8.2.1 through 8.5.2 of Pega Infinity, the password reset functionality for local accounts can be used to bypass local authentication checks.
CRITICAL
CVSS 9.8
Published Apr 29, 2021