CVE-2026-9751
EUVD-2026-3586709.06.2026, 23:17
The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| mongodb | mongodb | 8.3.0 ≤ 𝑥 < 8.3.3 | CNA |
| mongodb | mongodb | 8.2.0 ≤ 𝑥 < 8.2.10 | CNA |
| mongodb | mongodb | 8.0.0 ≤ 𝑥 < 8.0.24 | CNA |
| mongodb | mongodb | 7.0.0 ≤ 𝑥 < 7.0.35 | CNA |
Common Weakness Enumeration
Vulnerability Media Exposure