Vulnerability Bulletins

CVE-2026-96746

   
Affected software MONGODB
 
An out-of-bounds write in the connection-monitoring logic of the MongoDB C Driver may allow an unauthenticated party who controls name resolution and the responses of the hosts named in a client's connection string to write beyond the end of a heap buffer. This may cause the application using the driver to terminate unexpectedly.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-96746