logo

Oracle Issues Emergency Guidance as PeopleSoft Flaw Linked to Widespread Data Theft

ID: c77fae8f-6421-5821-b861-e6a9e7e28f02

STIX ID: report--c77fae8f-6421-5821-b861-e6a9e7e28f02

Feed Name: Security Boulevard

Threat Score
80/100

Date Published: 2026-06-12

Date Updated: 2026-06-13

Author: James Maguire

...
...

**Critical PeopleSoft vulnerability (CVE-2026-35273) exploited in the wild:** A severe unauthenticated remote-code-execution flaw in Oracle PeopleSoft PeopleTools (8.61/8.62) has been actively exploited by the ShinyHunters group in a campaign affecting over 100 organizations—predominantly colleges and universities—resulting in compromised systems, stolen student and organizational data, and the use of disguised MeshCentral agents to maintain access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.