CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

MongoDB security advisory (AV26-918)

unknown
Serial number: AV26-918 Date: September 14, 2026 As of September 11, 2026, MongoDB is affected by a vulnerability in the following product: MongoDB Server Prior to 7.0.43 Prior to 8.0.32 Prior to 8.3.11 Prior to 9.1.0-rc0 Prior to 9.0.1 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Shred collection validator constants during parsing Alerts | MongoDB

Details

Source
Canadian Centre for Cyber Security (CA · national-cert · site)
Severity
unknown
Published
2026-09-14
Exploitation
Not in CISA KEV at last sync

Original advisory: https://cyber.gc.ca/en/alerts-advisories/mongodb-security-advisory-av26-918

More from Canadian Centre for Cyber Security