When schema validation is enabled on a collection and an update or insert would violate the collection's schema, the local server log message generated may not have all user data redacted.
This issue impacts MongoDB Server v7.0 versions prior to 7.0.34, v8.0 versions prior to 8.0.23, v8.2 versions prior to 8.2.9 and v8.3 versions prior to 8.3.2.
References
| Link | Resource |
|---|---|
| https://jira.mongodb.org/browse/SERVER-121895 | Issue Tracking Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-05-13 04:17
Updated : 2026-06-17 11:03
NVD link : CVE-2026-8200
Mitre link : CVE-2026-8200
CVE.ORG link : CVE-2026-8200
JSON object : View
Products Affected
mongodb
- mongodb
CWE
CWE-532
Insertion of Sensitive Information into Log File
