SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-82067

HIGH · CVSS 8.1 EPSS 0.28%

Source: NVD + CISA KEV + EPSS · Published 2026-09-08 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

MongoDB Server is vulnerable due to improper case sensitivity handling in its configuration validation, which may leave the authorization subsystem disabled during startup. This flaw allows unauthenticated users with network access to execute arbitrary administrative operations, compromising data confidentiality, integrity, and availability. Organizations using MongoDB should prioritize this vulnerability to prevent potential unauthorized access and data breaches.

CVE
CVE-2026-82067
Severity
HIGH
CVSS
8.1
EPSS
0.28%
MongoDB

Original NVD Description

Improper handling of case sensitivity in the configuration validation component of MongoDB Server may cause the authorization subsystem to remain in a default disabled state during server startup. An unauthenticated user with network access to a deployment where this condition occurs can perform arbitrary administrative operations, resulting in full impact of data confidentiality, integrity, and availability.

Related CVEs

Other vulnerabilities affecting the same vendor(s)