CVE-2026-96744
- EPSS 0.29%
- Veröffentlicht 24.09.2026 15:51:12
- Zuletzt bearbeitet 24.09.2026 21:00:46
Improper neutralization of special elements in data query logic in the cache lock implementation of the MongoDB integration for Laravel can cause a caller-supplied lock owner value to be evaluated as an aggregation expression rather than as a literal...
CVE-2026-88028
- EPSS 0.24%
- Veröffentlicht 10.09.2026 17:54:31
- Zuletzt bearbeitet 29.09.2026 16:11:32
Improper neutralization of special elements in data query logic in the polymorphic relation handling of the MongoDB integration for Laravel can cause a caller-supplied relation identifier to be interpreted as a query condition rather than as a litera...
CVE-2026-88027
- EPSS 0.23%
- Veröffentlicht 10.09.2026 17:52:16
- Zuletzt bearbeitet 29.09.2026 16:15:26
Improper neutralization of special elements in data query logic in the embedded-document relation handling of the MongoDB integration for Laravel can cause a caller-supplied embedded record identifier to be interpreted as a query condition rather tha...
CVE-2026-88022
- EPSS 0.3%
- Veröffentlicht 10.09.2026 17:37:03
- Zuletzt bearbeitet 29.09.2026 16:51:46
Improper neutralization of special elements in data query logic in the MongoDB integration for Laravel can cause an array supplied to an explicit equality filter to be interpreted as a query condition rather than as a literal value. This affects the ...