Oracle Issues Emergency Guidance as PeopleSoft Flaw Linked to Widespread Data Theft
ID: c77fae8f-6421-5821-b861-e6a9e7e28f02
STIX ID: report--c77fae8f-6421-5821-b861-e6a9e7e28f02
Feed Name: Security Boulevard
Threat Score
**Critical PeopleSoft vulnerability (CVE-2026-35273) exploited in the wild:** A severe unauthenticated remote-code-execution flaw in Oracle PeopleSoft PeopleTools (8.61/8.62) has been actively exploited by the ShinyHunters group in a campaign affecting over 100 organizations—predominantly colleges and universities—resulting in compromised systems, stolen student and organizational data, and the use of disguised MeshCentral agents to maintain access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
