
Read CVE-2026-60821 first. CVSS 9.8. Unauthenticated, over HTTP, low complexity, full PeopleTools takeover. Business Interlink — legacy plumbing most sites forgot was still enabled. Affected: 8.61 through 8.63. Including the release Oracle shipped last month.
Post summary
The post announces CVE-2026-60821, a high‑impact unauthenticated HTTP-based full takeover of PeopleTools affecting Oracle 8.61‑8.63, with no PoC, exploit, or patch details provided.
