Vulnerabilities > Pega > Infinity > High

DATE CVE VULNERABILITY TITLE RISK
2022-01-28 CVE-2021-27654 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Pega Infinity
Forgotten password reset functionality for local accounts can be used to bypass local authentication checks.
local
low complexity
pega CWE-640
7.8