VYPR

Entity Framework Core Provider

by MongoDB

CVEs (2)

  • CVE-2026-92757MedSep 17, 2026
    risk 0.36cvss 5.5epss

    Applications built on MongoDB Entity Framework Core Provider which place a database name in the connection string may inadvertently disable field level encryption.

  • CVE-2026-92756MedSep 17, 2026
    risk 0.36cvss 5.5epss

    Applications built on MongoDB Entity Framework Core Provider which combine independent encryption settings and this provider's encryption settings may silently lose TLS and schema-map settings leading to protected fields being stored unencrypted in the database.