Vulnerability in Oracle PeopleSoft Enterprise HCM Human Resources Component
CVE-2026-21961
6.1MEDIUM
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 20 January 2026
What is CVE-2026-21961?
A vulnerability exists within the Company Directory and Org Chart Viewer component of Oracle PeopleSoft Enterprise HCM Human Resources, specifically affecting version 9.2. This easily exploitable vulnerability could allow an unauthenticated attacker with network access via HTTP to gain unauthorized access to sensitive data. The attack necessitates human interaction from another party, which could lead to unauthorized modifications, deletions, or access to specific data within the system. Furthermore, the effects of this vulnerability may extend beyond the immediate component, potentially impacting other products connected to PeopleSoft Enterprise HCM.
Affected Version(s)
PeopleSoft Enterprise HCM Human Resources 9.2