Medium severity6.5NVD Advisory· Published Sep 24, 2026· Updated Sep 24, 2026
CVE-2026-96746
CVE-2026-96746
Description
An out-of-bounds write in the connection-monitoring logic of the MongoDB C Driver may allow an unauthenticated party who controls name resolution and the responses of the hosts named in a client's connection string to write beyond the end of a heap buffer. This may cause the application using the driver to terminate unexpectedly.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.