Back to CVE List

CVE-2026-9751

MEDIUM SEVERITY

CVSS Score & Metrics

Base Score
5.5 / 10
Vector String
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Vulnerability Description

The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-532
Source
NVD
Vendor
mongodb
Product
mongodb

External References

Discussion (0)

Add Comment

No comments yet. Be the first!