VYPR

MongoDB Compass

by MongoDB

CVEs (1)

  • CVE-2026-9101MedMay 20, 2026
    risk 0.28cvss 4.3epss 0.00

    Prototype pollution in csv parsing logic during import can lead to untrusted file paths (but not arguments) entering shell.openExternal after specific user behavior leading to "1-click" command execution.