MEDIUMVulnerability

CVE-2026-82066

A heap out-of-bounds read security issue exists in the query planning component of MongoDB Server. An authenticated user with database read and write privileges can trigger the security issue through crafted query operations, causing the server to read memory beyond allocated buffer boundaries. The revealed memory contents may be partially observable through diagnostic query statistics output.

Properties

severity
MEDIUM
score
4.3
cve_id
CVE-2026-82066
signal_observed_at
2026-09-16T21:37:08+00:00
vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
published_at
2026-09-08T17:18:35.490
last_modified
2026-09-16T20:37:42.113

Related Entities (3)

AFFECTS_PRODUCT (1)

[Product]

HAS_WEAKNESS (1)

[Weakness]Out-of-bounds Read

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-82066 — Ninja Signal Threat Intelligence | Ninja Signal