securityonline.info 6/15/2026, 5:07:26 AM · external

Oracle PeopleSoft flaw lets attackers bypass auth, CVE-2026-35273

Oracle PeopleSoft flaw lets attackers bypass auth, CVE-2026-35273
CyberSIXT Evidence Panel Source marked as original reporting
CISA KEV Listed in KEV
Patch Patch Available

THE page discusses a critical vulnerability labeled CVE-2026-35273, identified in Oracle PeopleSoft Enterprise PeopleTools, which allows for missing authentication in a critical function. Access to detailed reports on the vulnerability requires user support. There are also references to similar vulnerabilities in FreeBSD and Android. The article is authored by Do Son, a cybersecurity researcher who focuses on vulnerabilities and malware.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline