Critical severity9.8NVD Advisory· Published Aug 12, 2026· Updated Sep 11, 2026
CVE-2026-19001
CVE-2026-19001
Description
The MongoDB BI Connector ODBC Driver may write outside the bounds of a fixed-size buffer when an application supplies an unusually long catalog, schema, or object name to a metadata retrieval function. This may result in memory corruption within the calling application's process, leading to abnormal termination and, under certain conditions, the potential for arbitrary code execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
1- github.com/mongodb/mongo-bi-connector-odbc-driver/releases/tag/v1.4.9nvdVendor AdvisoryRelease Notes
News mentions
1- MongoDB: 25 Vulnerabilities Disclosed, Including Critical BI Connector FlawsVypr Intelligence · Aug 12, 2026