MongoDB / Rust Driver
3 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-88024 | GridFS data disclosure and deletion via query-operator injection in file IDs in the MongoDB Rust Driver | MEDIUM | 6.1 | Sep 10, 2026 |
| CVE-2026-81526 | Cross-database write redirection via unvalidated dotted database name in bulk write namespaces | HIGH | 7.1 | Aug 27, 2026 |
| CVE-2025-11695 | Configuration may unexpectedly disable certificate validation | HIGH | 8.0 | Oct 13, 2025 |
| CVE-2024-6382 | Adversarial unsanitized input may cause MongoDB Rust Driver to issue unintended commands. | HIGH | 7.5 | Jul 2, 2024 |
| CVE-2021-20332 | MongoDB Rust Driver may publish events containing authentication-related data to a connection pool event listener configured by an application | MEDIUM | 4.4 | Aug 2, 2021 |
Showing 1 to 3 of 3 CVEs