{"schema_version":1,"title":"MongoDB vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 154 vulnerabilities in MongoDB: 7 in the last 7 days and 118 in the last 90 days, 5 of them critical and 2 exploited in the wild. The most recent, CVE-2026-96749, was published on 24 September 2026. 13 technologies have a page of their own.","url":"https://junglewise.ai/threats/vendors/mongodb","json_url":"https://junglewise.ai/threats/vendors/mongodb.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/mongodb","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":50,"all_time":154,"critical":5,"exploited":2,"last_7_days":7,"last_30_days":80,"last_90_days":118,"last_365_days":148},"latest":[{"cve":"CVE-2026-96749","cvss":8.4,"epss":0.0013,"slug":"cve-2026-96749-an-integer-overflow-in-the-bson-document-encoding-component-of","title":"MongoDB Python Driver integer overflow in BSON encoding","severity":"high","exploited":false,"published_at":"2026-09-24T19:17:20.963+00:00","url":"https://junglewise.ai/threats/cve-2026-96749-an-integer-overflow-in-the-bson-document-encoding-component-of"},{"cve":"CVE-2026-96748","cvss":6.5,"epss":0.0026,"slug":"cve-2026-96748-pymongo-s-connection-string-parsing-decodes-percent-encoded","title":"PyMongo connection string parsing host injection","severity":"medium","exploited":false,"published_at":"2026-09-24T19:17:20.813+00:00","url":"https://junglewise.ai/threats/cve-2026-96748-pymongo-s-connection-string-parsing-decodes-percent-encoded"},{"cve":"CVE-2026-96747","cvss":5,"epss":0.0013,"slug":"cve-2026-96747-the-client-side-field-level-encryption-support-in-the-mongodb","title":"MongoDB Python Driver Unix socket misinterpretation in key management","severity":"medium","exploited":false,"published_at":"2026-09-24T19:17:20.65+00:00","url":"https://junglewise.ai/threats/cve-2026-96747-the-client-side-field-level-encryption-support-in-the-mongodb"},{"cve":"CVE-2026-96750","cvss":7.1,"epss":0.0019,"slug":"cve-2026-96750-mongodb-compass-can-interpolate-a-database-name-without-escaping","title":"MongoDB Compass code injection via unescaped database name","severity":"high","exploited":false,"published_at":"2026-09-24T16:17:27.61+00:00","url":"https://junglewise.ai/threats/cve-2026-96750-mongodb-compass-can-interpolate-a-database-name-without-escaping"},{"cve":"CVE-2026-96746","cvss":6.5,"epss":0.0037,"slug":"cve-2026-96746-an-out-of-bounds-write-in-the-connection-monitoring-logic-of-the","title":"MongoDB C Driver out-of-bounds write in connection monitoring","severity":"medium","exploited":false,"published_at":"2026-09-24T16:17:27.46+00:00","url":"https://junglewise.ai/threats/cve-2026-96746-an-out-of-bounds-write-in-the-connection-monitoring-logic-of-the"},{"cve":"CVE-2026-96745","cvss":5.6,"epss":0.003,"slug":"cve-2026-96745-deserialization-of-untrusted-data-in-the-command-monitoring","title":"MongoDB PHP Driver deserialization of untrusted data in command monitoring","severity":"medium","exploited":false,"published_at":"2026-09-24T16:17:27.293+00:00","url":"https://junglewise.ai/threats/cve-2026-96745-deserialization-of-untrusted-data-in-the-command-monitoring"},{"cve":"CVE-2026-96744","cvss":7.1,"epss":0.0029,"slug":"cve-2026-96744-improper-neutralization-of-special-elements-in-data-query-logic","title":"MongoDB laravel-mongodb cache lock injection","severity":"high","exploited":false,"published_at":"2026-09-24T16:17:27.12+00:00","url":"https://junglewise.ai/threats/cve-2026-96744-improper-neutralization-of-special-elements-in-data-query-logic"},{"cve":"CVE-2026-93764","cvss":6.5,"epss":0.0015,"slug":"cve-2026-93764-mongoid-may-omit-encryption-rules-for-fields-declared-on-embedded","title":"Mongoid client-side encryption omission in embedded models","severity":"medium","exploited":false,"published_at":"2026-09-18T18:18:35.33+00:00","url":"https://junglewise.ai/threats/cve-2026-93764-mongoid-may-omit-encryption-rules-for-fields-declared-on-embedded"},{"cve":"CVE-2026-93762","cvss":9.8,"epss":0.0057,"slug":"cve-2026-93762-mongoid-contains-an-unsafe-reflection-weakness-in-the-query-path","title":"Mongoid unsafe reflection weakness in query path for embedded documents","severity":"critical","exploited":false,"published_at":"2026-09-18T18:18:35.053+00:00","url":"https://junglewise.ai/threats/cve-2026-93762-mongoid-contains-an-unsafe-reflection-weakness-in-the-query-path"},{"cve":"CVE-2026-93761","cvss":7.5,"epss":0.0046,"slug":"cve-2026-93761-an-inefficient-regular-expression-complexity-issue-in-the-in","title":"Mongoid inefficient regex complexity in query evaluation","severity":"high","exploited":false,"published_at":"2026-09-18T18:18:34.917+00:00","url":"https://junglewise.ai/threats/cve-2026-93761-an-inefficient-regular-expression-complexity-issue-in-the-in"},{"cve":"CVE-2026-93760","cvss":8.2,"epss":0.0047,"slug":"cve-2026-93760-mongoid-does-not-restrict-which-query-operators-may-come-from","title":"Mongoid query operator injection via unsanitized filter parameters","severity":"high","exploited":false,"published_at":"2026-09-18T18:18:34.78+00:00","url":"https://junglewise.ai/threats/cve-2026-93760-mongoid-does-not-restrict-which-query-operators-may-come-from"},{"cve":"CVE-2026-93759","cvss":8.6,"epss":0.004,"slug":"cve-2026-93759-mongoid-does-not-neutralize-a-string-typed-query-criterion","title":"Mongoid query builder NoSQL injection via string criteria","severity":"high","exploited":false,"published_at":"2026-09-18T18:18:34.64+00:00","url":"https://junglewise.ai/threats/cve-2026-93759-mongoid-does-not-neutralize-a-string-typed-query-criterion"},{"cve":"CVE-2026-93765","cvss":9.1,"epss":0.0051,"slug":"cve-2026-93765-mongoid-contains-an-unsafe-reflection-weakness-in-the-document","title":"Mongoid unsafe reflection in document persistence layer","severity":"critical","exploited":false,"published_at":"2026-09-18T17:17:07.73+00:00","url":"https://junglewise.ai/threats/cve-2026-93765-mongoid-contains-an-unsafe-reflection-weakness-in-the-document"},{"cve":"CVE-2026-93758","cvss":8.1,"epss":0.0036,"slug":"cve-2026-93758-an-insecure-direct-object-reference-in-the-nested-attributes","title":"Mongoid insecure direct object reference in nested attributes","severity":"high","exploited":false,"published_at":"2026-09-18T17:17:07.58+00:00","url":"https://junglewise.ai/threats/cve-2026-93758-an-insecure-direct-object-reference-in-the-nested-attributes"},{"cve":"CVE-2026-93395","cvss":5.3,"epss":0.004,"slug":"cve-2026-93395-libbson-integer-underflow-in-bson-parsing","title":"libbson integer underflow in BSON parsing","severity":"medium","exploited":false,"published_at":"2026-09-17T21:17:56.443+00:00","url":"https://junglewise.ai/threats/cve-2026-93395-libbson-integer-underflow-in-bson-parsing"},{"cve":"CVE-2026-93394","cvss":3.7,"epss":0.0032,"slug":"cve-2026-93394-mongodb-libmongoc-scram-authentication-nonce-validation-bypass","title":"MongoDB libmongoc SCRAM authentication nonce validation bypass","severity":"low","exploited":false,"published_at":"2026-09-17T21:17:56.307+00:00","url":"https://junglewise.ai/threats/cve-2026-93394-mongodb-libmongoc-scram-authentication-nonce-validation-bypass"},{"cve":"CVE-2026-93393","cvss":8.1,"epss":0.0047,"slug":"cve-2026-93393-mongodb-c-driver-heap-overflow-in-tls-transport-layer","title":"MongoDB C Driver heap overflow in TLS transport layer","severity":"high","exploited":false,"published_at":"2026-09-17T21:17:56.163+00:00","url":"https://junglewise.ai/threats/cve-2026-93393-mongodb-c-driver-heap-overflow-in-tls-transport-layer"},{"cve":"CVE-2026-92758","cvss":5.5,"epss":0.0015,"slug":"cve-2026-92758-mongodb-entity-framework-core-credential-exposure-in-logging","title":"MongoDB Entity Framework Core credential exposure in logging","severity":"medium","exploited":false,"published_at":"2026-09-17T20:18:57.433+00:00","url":"https://junglewise.ai/threats/cve-2026-92758-mongodb-entity-framework-core-credential-exposure-in-logging"},{"cve":"CVE-2026-92757","cvss":5.5,"epss":0.0007,"slug":"cve-2026-92757-mongodb-entity-framework-core-provider-field-encryption-bypass","title":"MongoDB Entity Framework Core Provider field encryption bypass via database name misconfiguration","severity":"medium","exploited":false,"published_at":"2026-09-17T20:18:57.293+00:00","url":"https://junglewise.ai/threats/cve-2026-92757-mongodb-entity-framework-core-provider-field-encryption-bypass"},{"cve":"CVE-2026-92756","cvss":5.5,"epss":0.0007,"slug":"cve-2026-92756-mongodb-entity-framework-core-provider-encryption-settings-bypass","title":"MongoDB Entity Framework Core Provider encryption settings bypass","severity":"medium","exploited":false,"published_at":"2026-09-17T20:18:57.16+00:00","url":"https://junglewise.ai/threats/cve-2026-92756-mongodb-entity-framework-core-provider-encryption-settings-bypass"},{"cve":"CVE-2026-88036","cvss":8.3,"epss":0.0048,"slug":"cve-2026-88036-mongodb-c-driver-gridfs-improper-query-construction","title":"MongoDB C Driver GridFS improper query construction","severity":"high","exploited":false,"published_at":"2026-09-10T19:17:41.1+00:00","url":"https://junglewise.ai/threats/cve-2026-88036-mongodb-c-driver-gridfs-improper-query-construction"},{"cve":"CVE-2026-88035","cvss":4.7,"epss":0.0014,"slug":"cve-2026-88035-mongodb-c-driver-integer-overflow-in-sasl-authentication","title":"MongoDB C Driver integer overflow in SASL authentication","severity":"medium","exploited":false,"published_at":"2026-09-10T19:17:40.953+00:00","url":"https://junglewise.ai/threats/cve-2026-88035-mongodb-c-driver-integer-overflow-in-sasl-authentication"},{"cve":"CVE-2026-88034","cvss":8.3,"epss":0.0046,"slug":"cve-2026-88034-mongodb-c-driver-gridfs-injection-in-file-identifier-query","title":"MongoDB C++ Driver GridFS injection in file identifier query","severity":"high","exploited":false,"published_at":"2026-09-10T19:17:40.817+00:00","url":"https://junglewise.ai/threats/cve-2026-88034-mongodb-c-driver-gridfs-injection-in-file-identifier-query"},{"cve":"CVE-2026-88033","cvss":8.3,"epss":0.0046,"slug":"cve-2026-88033-mongodb-java-driver-gridfs-query-injection-in-file-identifiers","title":"MongoDB Java Driver GridFS query injection in file identifiers","severity":"high","exploited":false,"published_at":"2026-09-10T19:17:40.673+00:00","url":"https://junglewise.ai/threats/cve-2026-88033-mongodb-java-driver-gridfs-query-injection-in-file-identifiers"},{"cve":"CVE-2026-88032","cvss":5.9,"epss":0.0026,"slug":"cve-2026-88032-mongodb-java-driver-use-after-free-in-reactive-encryption","title":"MongoDB Java Driver use-after-free in reactive encryption","severity":"medium","exploited":false,"published_at":"2026-09-10T19:17:40.533+00:00","url":"https://junglewise.ai/threats/cve-2026-88032-mongodb-java-driver-use-after-free-in-reactive-encryption"}],"vendor":{"hub":true,"name":"MongoDB","slug":"mongodb","homepage":"https://www.mongodb.com/","description":"An American software company that develops and provides commercial support for the MongoDB database.","url":"https://junglewise.ai/threats/vendors/mongodb"},"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":26},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":1,"exploited":0,"vulnerabilities":10},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":23},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":9},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":30},{"week":"2026-09-14","critical":2,"exploited":0,"vulnerabilities":13},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":7}],"most_severe":[{"cve":"CVE-2025-14847","cvss":8.7,"epss":0.6894,"slug":"cve-2025-14847-mongodb-server-uninitialized-heap-memory-disclosure-in-zlib","title":"MongoDB Server uninitialized heap memory disclosure in Zlib headers","severity":"critical","exploited":true,"published_at":"2025-12-29T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-14847-mongodb-server-uninitialized-heap-memory-disclosure-in-zlib"},{"cve":"CVE-2019-10758","cvss":3.1,"epss":0.8473,"slug":"cve-2019-10758-mongodb-mongo-express-remote-code-execution-vulnerability","title":"mongo-express remote code execution in index creation","severity":"critical","exploited":true,"published_at":"2019-12-30T19:30:31+00:00","url":"https://junglewise.ai/threats/cve-2019-10758-mongodb-mongo-express-remote-code-execution-vulnerability"},{"cve":"CVE-2026-93762","cvss":9.8,"epss":0.0057,"slug":"cve-2026-93762-mongoid-contains-an-unsafe-reflection-weakness-in-the-query-path","title":"Mongoid unsafe reflection weakness in query path for embedded documents","severity":"critical","exploited":false,"published_at":"2026-09-18T18:18:35.053+00:00","url":"https://junglewise.ai/threats/cve-2026-93762-mongoid-contains-an-unsafe-reflection-weakness-in-the-query-path"},{"cve":"CVE-2026-19001","cvss":9.8,"epss":0.0054,"slug":"cve-2026-19001-mongodb-bi-connector-odbc-driver-buffer-overflow-in-metadata","title":"MongoDB BI Connector ODBC Driver buffer overflow in metadata functions","severity":"critical","exploited":false,"published_at":"2026-08-12T21:17:37.307+00:00","url":"https://junglewise.ai/threats/cve-2026-19001-mongodb-bi-connector-odbc-driver-buffer-overflow-in-metadata"},{"cve":"CVE-2026-93765","cvss":9.1,"epss":0.0051,"slug":"cve-2026-93765-mongoid-contains-an-unsafe-reflection-weakness-in-the-document","title":"Mongoid unsafe reflection in document persistence layer","severity":"critical","exploited":false,"published_at":"2026-09-18T17:17:07.73+00:00","url":"https://junglewise.ai/threats/cve-2026-93765-mongoid-contains-an-unsafe-reflection-weakness-in-the-document"},{"cve":"CVE-2026-81532","cvss":8.8,"epss":0.0049,"slug":"cve-2026-81532-mongodb-connector-for-bi-odbc-driver-buffer-overflow-in-cursor","title":"MongoDB Connector for BI ODBC driver buffer overflow in cursor name handling","severity":"high","exploited":false,"published_at":"2026-08-28T22:16:54.793+00:00","url":"https://junglewise.ai/threats/cve-2026-81532-mongodb-connector-for-bi-odbc-driver-buffer-overflow-in-cursor"},{"cve":"CVE-2026-18691","cvss":8.8,"epss":0.0036,"slug":"cve-2026-18691-mongodb-server-sasl-mechanism-downgrade-in-intra-cluster","title":"MongoDB Server SASL mechanism downgrade in intra-cluster authentication","severity":"high","exploited":false,"published_at":"2026-08-11T19:17:22.903+00:00","url":"https://junglewise.ai/threats/cve-2026-18691-mongodb-server-sasl-mechanism-downgrade-in-intra-cluster"},{"cve":"CVE-2026-8053","cvss":8.8,"epss":0.0006,"slug":"cve-2026-8053-mongodb-server-out-of-bounds-write-in-time-series-collections","title":"MongoDB Server out-of-bounds write in time-series collections","severity":"high","exploited":false,"published_at":"2026-05-13T04:17:41.287+00:00","url":"https://junglewise.ai/threats/cve-2026-8053-mongodb-server-out-of-bounds-write-in-time-series-collections"},{"cve":"CVE-2026-11933","cvss":8.8,"slug":"cve-2026-11933-mongodb-server-use-after-free-in-server-side-javascript-engine","title":"MongoDB Server use-after-free in server-side JavaScript engine","severity":"high","exploited":false,"published_at":"2026-06-12T02:16:38.527+00:00","url":"https://junglewise.ai/threats/cve-2026-11933-mongodb-server-use-after-free-in-server-side-javascript-engine"},{"cve":"CVE-2026-93759","cvss":8.6,"epss":0.004,"slug":"cve-2026-93759-mongoid-does-not-neutralize-a-string-typed-query-criterion","title":"Mongoid query builder NoSQL injection via string criteria","severity":"high","exploited":false,"published_at":"2026-09-18T18:18:34.64+00:00","url":"https://junglewise.ai/threats/cve-2026-93759-mongoid-does-not-neutralize-a-string-typed-query-criterion"}],"generated_at":"2026-09-26T18:07:00.158435+00:00","technologies":[{"name":"MongoDB Server","slug":"mongodb-server","vulnerabilities":62,"url":"https://junglewise.ai/threats/technologies/mongodb-server"},{"name":"MongoDB C Driver","slug":"c-driver","vulnerabilities":22,"url":"https://junglewise.ai/threats/technologies/c-driver"},{"name":"MongoDB","slug":"mongodb","vulnerabilities":12,"url":"https://junglewise.ai/threats/technologies/mongodb"},{"name":"MongoDB Connector for BI","slug":"connector-for-bi","vulnerabilities":8,"url":"https://junglewise.ai/threats/technologies/connector-for-bi"},{"name":"MongoDB Bi Connector Odbc Driver","slug":"bi-connector-odbc-driver","vulnerabilities":7,"url":"https://junglewise.ai/threats/technologies/bi-connector-odbc-driver"},{"name":"MongoDB Mongo-Express","slug":"mongo-express","vulnerabilities":5,"url":"https://junglewise.ai/threats/technologies/mongo-express"},{"name":"MongoDB Compass","slug":"compass","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/compass"},{"name":"MongoDB Entity Framework Core Provider","slug":"entity-framework-core-provider","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/entity-framework-core-provider"},{"name":"MongoDB Go Driver","slug":"go-driver","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/go-driver"},{"name":"MongoDB Java Driver","slug":"java-driver","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/java-driver"},{"name":"MongoDB Libmongocrypt","slug":"libmongocrypt","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/libmongocrypt"},{"name":"MongoDB Mongosql Transition Readiness Tool","slug":"mongosql-transition-readiness-tool","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/mongosql-transition-readiness-tool"},{"name":"MongoDB PHP Driver","slug":"php-driver","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/php-driver"}]}