Known vulnerabilities in MongoDB Server 7.0.36

Version: 7.0.36
Software CPE: cpe:2.3:a:mongodb:mongodb:*:*:*:*:*:*:*:*
Total vulnerabilities: 31
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting MongoDB Server version 7.0.36 MongoDB Server 7.0.36 is affected by 31 vulnerabilities: 1 high, 7 medium, 23 low Critical High Medium Low

Vulnerabilities (31)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU144149 - Incorrect Authorization
CVE-2026-18712
CWE-863 Medium
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144147 - Missing Authorization
CVE-2026-18709
CWE-862 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144146 - Incorrect Authorization
CVE-2026-18690
CWE-863 Medium
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144145 - NULL Pointer Dereference
CVE-2026-18699
CWE-476 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144144 - Selection of Less-Secure Algorithm During Negotiat
CVE-2026-18691
CWE-757 Medium
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144143 - Improper Privilege Management
CVE-2026-18702
CWE-269 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144142 - Out-of-bounds read
CVE-2026-18694
CWE-125 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144141 - Improper Control of Generation of Code ('Code Injection')
CVE-2026-18708
CWE-94 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144140 - Incorrect Authorization
CVE-2026-18696
CWE-863 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144139 - Use After Free
CVE-2026-18700
CWE-416 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144138 - Type confusion
CVE-2026-18701
CWE-843 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144137 - Reachable Assertion
CVE-2026-18697
CWE-617 Medium
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144136 - Out-of-bounds write
CVE-2026-18693
CWE-787 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144135 - Reliance on Untrusted Inputs in a Security Decision
CVE-2026-18705
CWE-807 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144132 - Out-of-bounds read
CVE-2026-18688
CWE-125 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144131 - Reachable Assertion
CVE-2026-18695
CWE-617 Low
No
No
7.0.40, 8.0.29, 8.3.8 18.08.2026 SB2026081848
#VU144125 - Reliance on Untrusted Inputs in a Security Decision
CVE-2026-13059
CWE-807 Medium
No
No
7.0.39, 8.0.28, 8.2.12, 8.3.7 18.08.2026 SB2026081846
#VU144124 - Reachable Assertion
CVE-2026-9737
CWE-617 Low
No
No
7.0.39, 8.0.28, 8.2.12, 8.3.7 18.08.2026 SB2026081846
#VU144123 - Incorrect Authorization
CVE-2026-13060
CWE-863 Low
No
No
7.0.39, 8.0.28, 8.2.12, 8.3.7 18.08.2026 SB2026081846
#VU144105 - Missing Authorization
CVE-2026-13078
CWE-862 Low
No
No
7.0.39, 8.0.28, 8.2.12, 8.3.7 18.08.2026 SB2026081846


Showing elements 1 - 20 out of 31