Medium severity6.5NVD Advisory· Published Sep 18, 2026
CVE-2026-93763
CVE-2026-93763
Description
A protection mechanism failure in the object-document mapper's encryption configuration generation can cause fields that an application declared for client-side field-level encryption to be written and kept in cleartext, without any error or warning. A party holding ordinary read access to the database can then read values that were intended to be protected from that party. This may result in unintended disclosure of sensitive information.
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.