Vulnerability in Oracle PeopleSoft Enterprise HCM Human Resources Component
CVE-2026-21961

6.1MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
20 January 2026

What is CVE-2026-21961?

A vulnerability exists within the Company Directory and Org Chart Viewer component of Oracle PeopleSoft Enterprise HCM Human Resources, specifically affecting version 9.2. This easily exploitable vulnerability could allow an unauthenticated attacker with network access via HTTP to gain unauthorized access to sensitive data. The attack necessitates human interaction from another party, which could lead to unauthorized modifications, deletions, or access to specific data within the system. Furthermore, the effects of this vulnerability may extend beyond the immediate component, potentially impacting other products connected to PeopleSoft Enterprise HCM.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

PeopleSoft Enterprise HCM Human Resources 9.2

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.