product of mongodb

mongoid

8 thingsrelated by NVD

Being told

Watch: its feed Ask more of it

The feed says each thing that enters, leaves or changes; a reader adds its address, /zetlyn/trackers/cve/things.atom?q=…, to theirs.

Every thing

Mongoid contains an unsafe reflection weakness in the document persistence layer of its object-document mapping code. Input whose keys are…
CVE-2026-93765
Severity critical
Mongoid may omit encryption rules for fields declared on embedded models when generating the client-side field-level encryption schema…
CVE-2026-93764
Severity medium
A protection mechanism failure in the object-document mapper's encryption configuration generation can cause fields that an application…
CVE-2026-93763
Severity medium
Mongoid contains an unsafe reflection weakness in the query path used for embedded documents. An application that passes an externally…
CVE-2026-93762
Severity critical
An inefficient regular expression complexity issue in the in-memory query evaluation component of the Mongoid library may allow an…
CVE-2026-93761
Severity high
Mongoid does not restrict which query operators may come from caller-supplied filter data when an application hands that data to its…
CVE-2026-93760
Severity high
Mongoid does not neutralize a string-typed query criterion supplied to its query builder, and instead passes it to the database as a…
CVE-2026-93759
Severity high
An insecure direct object reference in the nested attributes handling of the Mongoid object-document mapper may allow a user with basic…
CVE-2026-93758
Severity high