Improper handling of case sensitivity in the configuration validation component of MongoDB Server may cause the authorization subsystem to remain in a default disabled state during server startup. An unauthenticated user with network access to a deployment where this condition occurs can perform arbitrary administrative operations, resulting in full impact of data confidentiality, integrity, and availability.
References
| Link | Resource |
|---|---|
| https://jira.mongodb.org/browse/SERVER-131229 |
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-08 17:18
Updated : 2026-09-08 19:07
NVD link : CVE-2026-82067
Mitre link : CVE-2026-82067
CVE.ORG link : CVE-2026-82067
JSON object : View
Products Affected
No product.
CWE
CWE-178
Improper Handling of Case Sensitivity
