Unauthenticated Access Vulnerability in Oracle PeopleSoft Products
CVE-2026-60856
7.4HIGH
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 18 August 2026
What is CVE-2026-60856?
A vulnerability exists within the Oracle PeopleSoft Enterprise PeopleTools, specifically associated with the Install and Packaging component. This vulnerability allows an unauthenticated attacker with network access to exploit the system via HTTP. Successful exploitation could lead to unauthorized actions, including the creation, deletion, or alteration of critical data within the affected PeopleSoft Enterprise products. Organizations relying on these versions should prioritize addressing this vulnerability to safeguard sensitive information and ensure compliance with data security standards.
Affected Version(s)
PeopleSoft Enterprise PeopleTools 8.61 <= 8.63