MongoDB

Entity Framework Core Provider

3 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.05%
  • Veröffentlicht 17.09.2026 19:20:37
  • Zuletzt bearbeitet 24.09.2026 15:34:22

Applications built on MongoDB Entity Framework Core Provider which place a database name in the connection string may inadvertently disable field level encryption.

  • EPSS 0.11%
  • Veröffentlicht 17.09.2026 19:16:13
  • Zuletzt bearbeitet 24.09.2026 15:34:25

If logging mode is set to DEBUG or a malformed MongoDB connection string is used, application logs may collect sensitive information (if in use) such as passwords and AWS secure access keys.

  • EPSS 0.05%
  • Veröffentlicht 17.09.2026 19:04:51
  • Zuletzt bearbeitet 24.09.2026 15:34:28

Applications built on MongoDB Entity Framework Core Provider which combine independent encryption settings and this provider's encryption settings may silently lose TLS and schema-map settings leading to protected fields being stored unencrypted in t...