CVE-2026-96746
EUVD-2026-8626324.09.2026, 16:17
An out-of-bounds write in the connection-monitoring logic of the MongoDB C Driver may allow an unauthenticated party who controls name resolution and the responses of the hosts named in a client's connection string to write beyond the end of a heap buffer. This may cause the application using the driver to terminate unexpectedly.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| mongodb | c_driver | 𝑥 < 1.30.12 | CNA |
| mongodb | c_driver | 2.0.0 ≤ 𝑥 < 2.5.5 | CNA |
Common Weakness Enumeration