MongoDB libmongocrypt
3 known vulnerabilities in MongoDB libmongocrypt, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-84962 CVSS 5.7 medium An unauthorized user with key vault write access may cause an authorized client to issue arbitrary authenticated Google Cloud KMS API…
- CVE-2026-84971 CVSS 7.1 high Improper handling of an unexpected value size in the decryption path of a client-side encryption library can cause a failed internal check…
- CVE-2026-81523 CVSS 2.0 low A missing input-validation issue in MongoDB libmongocrypt's automatic-encryption context setup allows a caller-supplied database…