
Worth singling out: CVE-2026-47017. CVSS 8.7, PeopleTools 8.61/8.62 only, Process Scheduler. A low-privileged user plus one HTTP interaction from someone else = read and modify critical data. Everyone models the perimeter. Nobody models the authenticated interior.
Post summary
The text discloses that a low‑privileged user can read and modify critical data on PeopleTools 8.61/8.62 via a single HTTP interaction with the Process Scheduler, but provides no PoC, exploit code, patch, or evidence of current exploitation.
