Beveiligingsadvies

CVE-2026-81522

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-08-27 18:32:23
Laatst bijgewerkt 2026-08-29 03:55:54
Toegewezen door mongodb
CVSS-score 8.6
Status PUBLISHED

Beschrijving

A weakness in the MongoDB C++ Driver's handling of caller-supplied namespace identifiers allows special characters embedded in those identifiers. An application that builds a namespace identifier from untrusted input without validating it may therefore have its operation directed at a different target than intended. This can result in limited unauthorized read and write access to data belonging to another logical tenant of the affected application.