mongodb
107 known vulnerabilities affecting mongodb products.
Products
mongodb 85
bi_connector_odbc_driver 7
c_driver 3
mongosql_transition_readiness_tool 3
libmongocrypt 3
java_driver 2
c\+\+_driver 2
php_driver 1
mongodb_client_encryption 1
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-18703 | Low | 0.1% | 4.2 | An issue in MongoDB Server could allow a party with a valid client certificate a… | |
| CVE-2026-9751 | Low | 0.1% | 5.5 | The ldapQueryPassword parameter, when set through the runtime setParameter comma… | |
| CVE-2026-88035 | Low | 0.1% | 4.7 | A size check in the client-side authentication path of the MongoDB C Driver can … | |
| CVE-2026-9741 | Low | 0.1% | 6.5 | A bug in query analysis processing of the $vectorSearch aggregation stage for Qu… | |
| CVE-2026-13067 | Low | 0.1% | 6.3 | When PROXY protocol v2 is used on the Unix domain socket path, roles derived fro… | |
| CVE-2026-84970 | Low | 0.1% | 6.2 | A numeric truncation weakness exists in the JSON parsing component of the MongoD… | |
| CVE-2026-81523 | Low | 0.1% | 4.4 | A missing input-validation issue in MongoDB libmongocrypt's automatic-encryption… |
← Prev Page 3 of 3