Medium severity6.5NVD Advisory· Published Feb 10, 2026· Updated Apr 15, 2026
CVE-2026-2302
CVE-2026-2302
Description
Under specific conditions when processing a maliciously crafted value of type Hash r, Mongoid::Criteria.from_hash may allow for executing arbitrary Ruby code.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.