Browse all 7 CVE security advisories affecting MongoDB, Inc.. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-8202 | Post-authentication CPU utilization DoS via $trim/$ltrim/$rtrim operators — MongoDB ServerCWE-770 | 4.3 | Medium | 2026-05-13 |
| CVE-2026-8336 | Post-authentication use-after-free error in $_internalJsEmit and mapreduce commands — MongoDB ServerCWE-416 | 7.5 | High | 2026-05-13 |
| CVE-2026-8201 | Use-After-Free in MongoDB FLE Query Analysis When Processing Positional Projections on Encrypted Fields — MongoDB ServerCWE-416 | 6.4 | Medium | 2026-05-13 |
| CVE-2026-8200 | Schema validation log messages may not redact user data — MongoDB ServerCWE-532 | 2.7 | Low | 2026-05-13 |
| CVE-2026-8199 | Post-auth memory exhaustion via bitwise match expressions — MongoDB ServerCWE-1325 | 6.5 | Medium | 2026-05-13 |
| CVE-2026-8053 | FlatBSON Duplicate Field Index Drift — MongoDB ServerCWE-787 | 8.8 | High | 2026-05-12 |
This page lists every published CVE security advisory associated with MongoDB, Inc.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.