Vulnerability in PeopleSoft Enterprise PeopleTools by Oracle
CVE-2026-83016

7.2HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
15 September 2026

What is CVE-2026-83016?

A security vulnerability has been identified in Oracle's PeopleSoft Enterprise PeopleTools, specifically in the SQR component. The affected versions, 8.61 to 8.63, expose the system to potential exploitation by high-privileged attackers with access to the infrastructure where PeopleSoft operates. Successful exploitation of this vulnerability necessitates human interaction from individuals other than the attacker, creating a risk of significant impact on the broader suite of PeopleSoft products. Exploiting this vulnerability may lead to unauthorized control over PeopleSoft Enterprise PeopleTools, posing risks to confidentiality, integrity, and availability.

Affected Version(s)

PeopleSoft Enterprise PeopleTools 8.61 <= 8.63

References

CVSS V3.1

Score:
7.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.