Known Vulnerabilities for Mongodb by Anynines
Listed below are 1 of the newest known vulnerabilities associated with "Mongodb" by "Anynines".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-40352 json | FastGPT is an AI Agent building platform. In versions prior to 4.14.9.5, the password change endpoint is vulnerable to NoSQL ... | Not Provided | 2026-04-17 | 2026-04-20 |
| CVE-2026-40351 json | FastGPT is an AI Agent building platform. In versions prior to 4.14.9.5, the password-based login endpoint uses TypeScript ty... | Not Provided | 2026-04-17 | 2026-04-20 |
| CVE-2026-39857 json | ApostropheCMS is an open-source Node.js content management system. Versions 4.28.0 and prior contain an authorization bypass ... | Not Provided | 2026-04-15 | 2026-04-16 |
| CVE-2026-34163 json | FastGPT is an AI Agent building platform. Prior to version 4.14.9.5, FastGPT's MCP (Model Context Protocol) tools endpoints (... | Not Provided | 2026-03-31 | 2026-03-31 |
| CVE-2026-33888 json | ApostropheCMS is an open-source Node.js content management system. Versions 4.28.0 and prior contain an authorization bypass ... | Not Provided | 2026-04-15 | 2026-04-15 |
| CVE-2026-33877 json | ApostropheCMS is an open-source Node.js content management system. Versions 4.28.0 and prior contain a timing side-channel vu... | Not Provided | 2026-04-15 | 2026-04-15 |
| CVE-2026-31827 json | Alienbin is an anonymous code and text sharing web service. In 1.0.0 and earlier, the /save endpoint in server.js drops and r... | Not Provided | 2026-03-10 | 2026-03-11 |
| CVE-2026-8431 json | An administrative user with access to configure webhooks can execute arbitrary commands by configuring and then triggering we... | Not Provided | 2026-05-12 | 2026-05-12 |
| CVE-2026-8063 json | An authenticated user can crash mongod when running $rankFusion or $scoreFusion with an empty pipeline on a view. When resol... | Not Provided | 2026-05-07 | 2026-05-07 |
| CVE-2026-6914 json | Computing the MD5 checksum of a malformed BSON object under specific conditions may cause loss of availability in MongoDB ser... | Not Provided | 2026-04-29 | 2026-04-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Anynines | Mongodb | 2.1.2 | |||
| Application | Anynines | Mongodb | 2.1.1 | |||
| Application | Anynines | Mongodb | 2.1.0 | |||
| Application | Anynines | Mongodb | 2.0.2 | |||
| Application | Anynines | Mongodb | 2.0.1 | |||
| Application | Anynines | Mongodb | 1.1.0 | |||
| Application | Anynines | Mongodb | 1.0.1 | |||
| Application | Anynines | Mongodb | 1.0.0 | |||
| Application | Anynines | Mongodb | 0.9.2 | |||
| Application | Anynines | Mongodb | 0.9.1 | |||
| Application | Anynines | Mongodb | 0.9.0 | |||
| Application | Anynines | Mongodb | 0.10.0 | |||
| Application | Anynines | Mongodb | - |