National Vulnerability Database · CISA-KEV
CVE-2026-35273
9.8
CVSS v3.1
| Schweregrad | critical aktiv ausgenutzt (KEV) |
|---|---|
| CVSS (max.) | 9.8 |
| Beiträge | 8 |
| Erste Meldung | 06.07.2026 |
| Letzte Meldung | 25.07.2026 |
Beiträge zu CVE-2026-35273
- high KEV Active Exploitation of Oracle PeopleSoft Zero-Day (CVE-2026-35273)
- high KEV What’s New in Rapid7 Products and Services: Q2 2026 in Review
- critical KEV ShinyHunters Targets Education Sector with Oracle PeopleSoft Exploit
- critical KEV 15th June – Threat Intelligence Report
- high KEV Oracle June 2026 Critical Security Patch Update Addresses 243 CVEs (CVE-2026-35273)
- critical KEV ZDI-26-387: Oracle PeopleSoft HttpListeningConnector Server-Side Request Forgery Vulnerability
- high KEV ZDI-26-388: Oracle PeopleSoft HubMBeanPersistance Deserialization of Untrusted Data Remote Code Execution Vulnerability
- high KEV ZDI-26-389: Oracle PeopleSoft ExecuteProcessActivityCommand External Control of File Path Remote Code Execution Vulnerability