Known Vulnerabilities for Mongodb-odm by Doctrine-project
Listed below are 1 of the newest known vulnerabilities associated with "Mongodb-odm" by "Doctrine-project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-54313 json | n8n is an open source workflow automation platform. Prior to 2.24.0, an authenticated user with workflow edit access could su... | Not Provided | 2026-06-23 | 2026-06-23 |
| CVE-2026-48616 json | Rocket.Chat versions <8.5.1, 8.4.4, 8.3.6, 8.2.6, 8.1.6, 8.0.7, 7.13.9, 7.10.13 has an access control vulnerability in Livech... | Not Provided | 2026-06-17 | 2026-06-17 |
| CVE-2026-45717 json | Budibase is an open-source low-code platform. Prior to 3.38.1, Budibase exposes a REST API for datasource management. The rou... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2026-45685 json | OpenTelemetry eBPF Instrumentation provides eBPF instrumentation based on the OpenTelemetry standard. From version 0.1.0 to b... | Not Provided | 2026-06-02 | 2026-06-02 |
| CVE-2026-42334 json | Mongoose is a MongoDB object modeling tool designed to work in an asynchronous environment. Prior to 6.13.9, 7.8.9, 8.22.1, a... | Not Provided | 2026-05-14 | 2026-05-14 |
| CVE-2026-41862 json | Spring Statemachine's Kryo-based persistence backends (JPA, MongoDB, Redis and ZooKeeper) deserialise persisted state-machine... | Not Provided | 2026-06-23 | 2026-06-24 |
| CVE-2026-41717 json | Spring Data MongoDB contains a SpEL (Spring Expression Language) expression injection vulnerability. The issue occurs during ... | Not Provided | 2026-06-10 | 2026-06-11 |
| CVE-2026-41696 json | Spring Data MongoDB repository query methods annotated with @Query that use regex parameter binding perform insufficient vali... | Not Provided | 2026-06-10 | 2026-06-10 |
| CVE-2026-40352 json | FastGPT is an AI Agent building platform. In versions prior to 4.14.9.5, the password change endpoint is vulnerable to NoSQL ... | Not Provided | 2026-04-17 | 2026-04-20 |
| CVE-2026-40351 json | FastGPT is an AI Agent building platform. In versions prior to 4.14.9.5, the password-based login endpoint uses TypeScript ty... | Not Provided | 2026-04-17 | 2026-04-20 |