Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
6.8
CVE-2026-92757
- EPSS 0.05%
- Veröffentlicht 17.09.2026 19:20:37
- Zuletzt bearbeitet 24.09.2026 15:34:22
Applications built on MongoDB Entity Framework Core Provider which place a database name in the connection string may inadvertently disable field level encryption.
5.7
CVE-2026-92758
- EPSS 0.11%
- Veröffentlicht 17.09.2026 19:16:13
- Zuletzt bearbeitet 24.09.2026 15:34:25
If logging mode is set to DEBUG or a malformed MongoDB connection string is used, application logs may collect sensitive information (if in use) such as passwords and AWS secure access keys.
6.8
CVE-2026-92756
- EPSS 0.05%
- Veröffentlicht 17.09.2026 19:04:51
- Zuletzt bearbeitet 24.09.2026 15:34:28
Applications built on MongoDB Entity Framework Core Provider which combine independent encryption settings and this provider's encryption settings may silently lose TLS and schema-map settings leading to protected fields being stored unencrypted in t...
1