Exploited in the wild PeopleSoft Enterprise PeopleTools ShinyHunters rce PeopleSoft Enterprise Applications Oracle
Google Confirms Exploitation of Oracle PeopleSoft Zero-Day by ShinyHunters
CVE Tools coverage
Google confirmed that ShinyHunters has exploited an Oracle-mitigated PeopleSoft flaw as a zero-day for data theft. The issue is tracked as CVE-2026-35273, a critical unauthenticated remote code execution vulnerability affecting PeopleSoft Enterprise PeopleTools versions 8.61 and 8.62, along with PeopleSoft Enterprise Applications, where Oracle released an out-of-band advisory and mitigations but patches do not appear to be available. Mandiant and Google Threat Intelligence Group observed activity tied to the exploitation from May 27 to June 9, with targeting reportedly concentrated in education and the University of Nottingham named as a confirmed victim.