CVE-2026-81522

A weakness in the MongoDB C++ Driver's handling of caller-supplied namespace identifiers allows special characters embedded in those identifiers. An application that builds a namespace identifier from untrusted input without validating it may therefore have its operation directed at a different target than intended. This can result in limited unauthorized read and write access to data belonging to another logical tenant of the affected application.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-27 20:18

Updated : 2026-08-29 04:18


NVD link : CVE-2026-81522

Mitre link : CVE-2026-81522

CVE.ORG link : CVE-2026-81522


JSON object : View

Products Affected

No product.

CWE
CWE-116

Improper Encoding or Escaping of Output