Oracle PeopleSoft OpenSearch Component Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in the OpenSearch component of Oracle PeopleSoft Enterprise PeopleTools, affecting versions 8.60 and 8.61. This vulnerability allows an unauthenticated attacker with network access via HTTP to cause a complete hang or crash of the PeopleTools application.

Impact

Exploitation of this vulnerability leads to a complete denial-of-service condition, causing PeopleSoft Enterprise PeopleTools to hang or crash frequently and repetitively.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
2.5
exploitability
7.0
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.