在 MongoDB C驱动的 LINQ 查询转换组件中,若未正确中和正则表达式元字符,攻击者提供的字符序列可能会改变受影响应用程序生成的正则表达式谓词。能够影响该值的已认证用户可致使应用程序返回超出原始过滤器范围之外的记录。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-88024 | 8.3 HIGH | GridFS data disclosure and deletion via query-operator injection in file IDs in the MongoD |
| CVE-2026-88023 | 8.3 HIGH | GridFS data disclosure and deletion via query-operator injection in file IDs in the MongoD |
| CVE-2026-88025 | 8.3 HIGH | GridFS data disclosure and deletion via query-operator injection in file IDs in the MongoD |
| CVE-2026-88030 | 8.3 HIGH | GridFS data disclosure and deletion via query-operator injection in file IDs in the MongoD |
| CVE-2026-88029 | 8.3 HIGH | GridFS data disclosure and deletion via query-operator injection in file IDs in the MongoD |
| CVE-2026-88034 | 8.3 HIGH | GridFS data disclosure and deletion via query-operator injection in file IDs in the MongoD |
| CVE-2026-88033 | 8.3 HIGH | GridFS data disclosure and deletion via query-operator injection in file IDs in the MongoD |
| CVE-2026-88036 | 8.3 HIGH | GridFS data disclosure and deletion via query-operator injection in file IDs in the MongoD |
| CVE-2026-88031 | 8.1 HIGH | GridFS data deletion via query-operator injection in file IDs in the MongoDB Go Driver |
| CVE-2026-88022 | 7.7 HIGH | Unauthorized document disclosure and deletion via query-operator injection in explicit equ |
| CVE-2026-88027 | 7.1 HIGH | Mass deletion and overwrite of embedded documents via query-operator injection in embedded |
| CVE-2026-88028 | 6.5 MEDIUM | Unauthorized document disclosure via query-operator injection in polymorphic relation iden |
| CVE-2026-88032 | 5.9 MEDIUM | Application denial of service via cancellation race in reactive client-side encryption in |
| CVE-2026-88035 | 4.7 MEDIUM | Heap buffer overflow via wrapped size check during SASL username canonicalization in Mongo |
No comments yet