VYPR

3.11.1

by Nuget

CVEs (2)

  • CVE-2026-81529HigAug 27, 2026
    risk 0.46cvss 7.1epss

    Improper neutralization of delimiters in connection-URL construction allows connection-option injection in the MongoDB C# Driver. When an application passes untrusted text into the driver's connection-URL builder and round-trips the builder back into a client configuration, the…

  • CVE-2026-81530MedAug 27, 2026
    risk 0.36cvss 5.6epss

    A weakness in the client-side encryption configuration surface of the MongoDB C# Driver causes sensitive key-management credential material supplied by the application to be reproduced verbatim in the driver's human-readable diagnostic representation of its client settings,…