Synced 16 Jun 2026 15:24 UTC Account
← PeopleSoft Enterprise PeopleTools

PeopleSoft Enterprise PeopleTools vulnerabilities: known CVEs & security history

Oracle · Actively exploited · 355 tracked CVEs · 2 actively exploited · updated June 2026 · what is a CVE? →

This is the full list of known vulnerabilities (CVEs) across all PeopleSoft Enterprise PeopleTools release lines — 355 in total, with 2 actively exploited in the wild. A CVE here doesn't mean your version is affected — check PeopleSoft Enterprise PeopleTools's current status and the safe version to run.

355
known CVEs
2
actively exploited (KEV)
15
critical severity
2
ransomware-linked

Known PeopleSoft Enterprise PeopleTools CVEs

Actively-exploited and most-severe first. Showing the top 80 of 355. Open any CVE for full details.

CVESeverityCVSSEPSSYear
CVE-2026-35273⚡ exploited critical 9.8 1% 2026
CVE-2019-2725⚡ exploited critical 9.8 100% 2019
CVE-2022-21543 critical 9.8 1% 2022
CVE-2021-3711 critical 9.8 88% 2021
CVE-2021-22931 critical 9.8 22% 2021
CVE-2019-17195 critical 9.8 11% 2019
CVE-2019-2729 critical 9.8 89% 2019
CVE-2019-0228 critical 9.8 9% 2019
CVE-2018-1000613 critical 9.8 5% 2018
CVE-2018-1000120 critical 9.8 12% 2018
CVE-2017-15708 critical 9.8 18% 2017
CVE-2017-10366 critical 9.8 43% 2017
CVE-2021-23926 critical 9.1 6% 2021
CVE-2018-1000301 critical 9.1 6% 2018
CVE-2018-1000122 critical 9.1 9% 2018
CVE-2008-0340 high 10 3% 2008
CVE-2008-0343 high 10 3% 2008
CVE-2008-0344 high 10 3% 2008
CVE-2008-0345 high 10 3% 2008
CVE-2008-0346 high 10 3% 2008
CVE-2008-0347 high 10 3% 2008
CVE-2008-0348 high 10 3% 2008
CVE-2008-0349 high 10 3% 2008
CVE-2024-21255 high 8.8 1% 2024
CVE-2021-3518 high 8.8 4% 2021
CVE-2019-3857 high 8.8 6% 2019
CVE-2019-3856 high 8.8 6% 2019
CVE-2019-3855 high 8.8 9% 2019
CVE-2019-2416 high 8.8 2% 2019
CVE-2018-2772 high 8.8 2% 2018
CVE-2018-2593 high 8.8 2% 2018
CVE-2019-2598 high 8.7 1% 2019
CVE-2016-0679 high 8.7 1% 2016
CVE-2021-3517 high 8.6 8% 2021
CVE-2020-2776 high 8.6 2% 2020
CVE-2023-22014 high 8.4 0% 2023
CVE-2021-2063 high 8.4 0% 2021
CVE-2021-2351 high 8.3 3% 2021
CVE-2017-10146 high 8.3 2% 2017
CVE-2017-10061 high 8.3 2% 2017
CVE-2022-21824 high 8.2 22% 2022
CVE-2021-41165 high 8.2 1% 2021
CVE-2021-41164 high 8.2 1% 2021
CVE-2016-8293 high 8.2 2% 2016
CVE-2016-8291 high 8.2 2% 2016
CVE-2016-5465 high 8.2 2% 2016
CVE-2026-34309 high 8.1 0% 2026
CVE-2024-21214 high 8.1 1% 2024
CVE-2021-2071 high 8.1 2% 2021
CVE-2020-28052 high 8.1 7% 2020
CVE-2017-10301 high 8.1 2% 2018
CVE-2017-10364 high 8.1 2% 2017
CVE-2016-5472 high 7.8 0% 2016
CVE-2019-2932 high 7.7 1% 2019
CVE-2021-32808 high 7.6 1% 2021
CVE-2016-8296 high 7.6 1% 2016
CVE-2025-53050 high 7.5 0% 2025
CVE-2025-21545 high 7.5 0% 2025
CVE-2020-36518 high 7.5 5% 2022
CVE-2021-37137 high 7.5 6% 2021
CVE-2021-37136 high 7.5 6% 2021
CVE-2021-22946 high 7.5 4% 2021
CVE-2021-40690 high 7.5 10% 2021
CVE-2021-36160 high 7.5 63% 2021
CVE-2021-34798 high 7.5 63% 2021
CVE-2021-37714 high 7.5 7% 2021
CVE-2021-22940 high 7.5 14% 2021
CVE-2021-22926 high 7.5 10% 2021
CVE-2021-36090 high 7.5 13% 2021
CVE-2021-35517 high 7.5 11% 2021
CVE-2021-35516 high 7.5 13% 2021
CVE-2021-35515 high 7.5 12% 2021
CVE-2021-22884 high 7.5 37% 2021
CVE-2021-22883 high 7.5 77% 2021
CVE-2020-8286 high 7.5 5% 2020
CVE-2020-8285 high 7.5 10% 2020
CVE-2020-1967 high 7.5 53% 2020
CVE-2020-2859 high 7.5 2% 2020
CVE-2020-7595 high 7.5 8% 2020
CVE-2019-20388 high 7.5 4% 2020

275 older / lower-severity CVEs not shown — see PeopleSoft Enterprise PeopleTools's full record.

Is my PeopleSoft Enterprise PeopleTools version affected?

The list above spans every release. To know whether your version is affected — and the minimum safe version to upgrade to — check it directly.

Check your PeopleSoft Enterprise PeopleTools version → · Monitor PeopleSoft Enterprise PeopleTools for new CVEs →

PeopleSoft Enterprise PeopleTools vulnerabilities — frequently asked

How many known vulnerabilities does PeopleSoft Enterprise PeopleTools have?

IsItPatched tracks 355 CVEs for PeopleSoft Enterprise PeopleTools, 2 of which are actively exploited (CISA KEV). 15 are critical-severity and 98 high-severity. These span every release line — what matters is whether the version you run is affected.

Does PeopleSoft Enterprise PeopleTools have any actively-exploited vulnerabilities?

Yes — 2 PeopleSoft Enterprise PeopleTools CVEs are in CISA's Known Exploited Vulnerabilities catalog, meaning they are confirmed exploited in the wild (2 linked to ransomware). Patch these as a priority.

What is the most severe PeopleSoft Enterprise PeopleTools vulnerability?

Among tracked issues, CVE-2026-35273 (CRITICAL, CVSS 9.8), which is actively exploited, ranks highest — a Missing authentication weakness.

Is PeopleSoft Enterprise PeopleTools safe to use?

It depends on the version. The latest supported PeopleSoft Enterprise PeopleTools release clears the known issues; older versions may still be affected. Check the exact version you run for a verdict.

CVE data aggregated from NVD, CISA KEV and EPSS (FIRST.org). Related: PeopleSoft Enterprise PeopleTools security status · PeopleSoft Enterprise PeopleTools end-of-life · actively-exploited CVEs. Always verify against Oracle's advisories — see our disclaimer.