Vulnerabilities (CVE)

Filtered by vendor Mongodb Subscribe
Total 142 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-4359 1 Mongodb 1 C Driver 2026-04-02 N/A 2.0 LOW
A compromised third party cloud server or man-in-the-middle attacker could send a malformed HTTP response and cause a crash in applications using the MongoDB C driver.
CVE-2026-4358 1 Mongodb 1 Mongodb 2026-04-02 N/A 6.4 MEDIUM
A specially crafted aggregation query with $lookup by an authenticated user with write privileges can cause a double-free or use-after-free memory issue in the slot-based execution (SBE) engine when an in-memory hash table is spilled to disk.