Security Advisory

CVE-2026-18703

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-11 18:33:16
Last updated 2026-08-11 20:28:32
Assigner mongodb
CVSS score 4.2
State PUBLISHED

Description

An issue in MongoDB Server could allow a party with a valid client certificate and a corresponding user account to authenticate using a certificate-based authentication method, even when an administrator has configured the server to restrict authentication to other mechanisms. This could allow authentication through a method the administrator intended to disable.