product of mongodb

c driver

11 thingsrelated by NVD

Being told

Watch: its feed Ask more of it

The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.

Every thing

A missing lower-bound validation in the bson_new_from_buffer() function of libbson allows an integer underflow when processing BSON data…
CVE-2026-93395
Severity medium
A flaw in libmongoc's SCRAM authentication implementation caused the client to continue the authentication handshake and transmit the…
CVE-2026-93394
Severity low
A heap-based buffer overflow exists in the TLS transport layer of the MongoDB C Driver when built with the Windows platform TLS backend. A…
CVE-2026-93393
Severity high
Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB C Driver can cause a caller-supplied…
CVE-2026-88036
Severity high
A size check in the client-side authentication path of the MongoDB C Driver can wrap around, so an unusually large user-name value is…
CVE-2026-88035
Severity medium
A memory-handling error in the BSON-to-JSON conversion helpers of the MongoDB C Driver can write a small number of bytes past the end of a…
CVE-2026-84969
Severity low
An integer wraparound in an allocation size calculation in the BSON library's JSON parsing code can cause a buffer to be released while a…
CVE-2026-84965
Severity medium
A double free in the OpenSSL-based TLS certificate revocation checking path of the MongoDB C Driver can be reached by a TLS endpoint that…
CVE-2026-84964
Severity high
An incorrect numeric conversion in the JSON parsing component of the MongoDB C Driver's BSON library may cause an unusually large text…
CVE-2026-84963
Severity medium
A weakness in the MongoDB C Driver allows special elements in caller-supplied database and collection name components to pass without…
CVE-2026-81524
Severity medium
The MongoDB C Driver's legacy GridFS API accepts malformed file metadata from the database without adequate validation. Crafted documents…
CVE-2026-9100
Severity high