[WID-SEC-2026-2818] MongoDB: Mehrere Schwachstellen CVSS Base Score 9.0 (kritisch) CVSS Temporal Score 7.8 (hoch) Remoteangriff ja Datum 12.08.2026 Stand 13.08.2026 Mitigation ja Betroffene Systeme Betriebssystem Sonstiges UNIX Windows Produktbeschreibung MongoDB ist ein Open-Source-Dokumentendatenbank. Produkte 12.08.2026 Open Source MongoDB BI Connector ODBC Driver<1.4.9 Open Source MongoDB SQL Schema Builder CLI to <1.2.1 Angriff Angriff Ein Angreifer kann mehrere Schwachstellen in MongoDB ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren, sensible Informationen offenzulegen oder einen Denial-of-Service-Zustand auszulösen. CVE Informationen Versionshistorie Feedback zum Advisory geben
Multiple critical vulnerabilities in MongoDB (CVSS Base Score 9.0) allow a remote attacker to execute arbitrary code, bypass security controls, manipulate data, disclose sensitive information, or cause a denial-of-service. Affected products include the MongoDB BI Connector ODBC Driver versions prior to 1.4.9 and the MongoDB SQL Schema Builder CLI versions prior to 1.2.1. A mitigation is available, but the article does not specify patch versions or detailed workarounds.