MEDIUMVulnerability

CVE-2026-82068

A security issue in MongoDB Server allows an authenticated user with write privileges to trigger a persistent fatal assertion crash by sending specially crafted retryable write commands. The crash state is durably persisted, causing the server process to repeatedly crash on restart and potentially propagating to additional nodes in a sharded cluster. Manual intervention is required to restore service availability.

Properties

severity
MEDIUM
score
6.5
cve_id
CVE-2026-82068
signal_observed_at
2026-09-16T21:37:08+00:00
vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
published_at
2026-09-08T17:18:35.750
last_modified
2026-09-16T20:38:17.227

Related Entities (3)

AFFECTS_PRODUCT (1)

[Product]

HAS_WEAKNESS (1)

[Weakness]Reachable Assertion

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-82068 — Ninja Signal Threat Intelligence | Ninja Signal