CVE-2026-9751
MEDIUM SEVERITYCVSS Score & Metrics
Base Score
5.5 / 10
Vector String
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Vulnerability Description
The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-532
Source
NVD
Vendor
mongodb
Product
mongodb
Discussion (0)
Add Comment
No comments yet. Be the first!