MEDIUMVulnerability
CVE-2026-82066
A heap out-of-bounds read security issue exists in the query planning component of MongoDB Server. An authenticated user with database read and write privileges can trigger the security issue through crafted query operations, causing the server to read memory beyond allocated buffer boundaries. The revealed memory contents may be partially observable through diagnostic query statistics output.
Properties
- severity
- MEDIUM
- score
- 4.3
- cve_id
- CVE-2026-82066
- signal_observed_at
- 2026-09-16T21:37:08+00:00
- vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
- published_at
- 2026-09-08T17:18:35.490
- last_modified
- 2026-09-16T20:37:42.113
Related Entities (3)
AFFECTS_PRODUCT (1)
→[Product]
HAS_WEAKNESS (1)
→[Weakness]Out-of-bounds Read
DESCRIBED_BY (1)
→[Source]NVD
Explore deeper with Ninja Signal's threat intelligence graph