5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N
Description
Incorrect validation of the profile command may result in the determination that a request altering the 'filter' is read-only.
Basic Information
ID
CVE-2026-25609
Source
mongodb
Published
Feb 10, 2026 at 18:39
Affected Product
Vendor
MongoDB Inc
Product
MongoDB Server
Version
8.2
Affected Versions
MongoDB Inc MongoDB Server 8.2
MongoDB Inc MongoDB Server 8.0
MongoDB Inc MongoDB Server 7.0
MongoDB Inc MongoDB Server 8.0
MongoDB Inc MongoDB Server 7.0