Known Vulnerabilities for Bi Connector by Mongodb
Listed below are 8 of the newest known vulnerabilities associated with "Bi Connector" by "Mongodb".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-102374 json | GestSup versions before 3.2.62 contain a stored cross-site scripting vulnerability in the IMAP OAuth connector that double-de... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-102372 json | GestSup versions before 3.2.61 fail to properly sanitize HTML email bodies in the IMAP LOGIN connector, allowing unauthentica... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-102243 json | A vulnerability was identified in MODSetter SurfSense up to 2.0.3. This issue affects some unknown processing of the file /ap... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102138 json | An authenticated administrator on a node with an optional, separately licensed gateway role enabled could supply a connector ... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-102133 json | An optional, separately licensed repository-connector feature in Kiteworks Core did not neutralize special characters in a us... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-100849 json | AzuraCast is a self-hosted web radio management suite. In AzuraCast before 0.23.8, the station webhook URL validation in Abst... | Not Provided | 2026-09-27 | 2026-09-28 |
| CVE-2026-100389 json | GestSup versions before 3.2.62 contain a remote code execution vulnerability in the basic IMAP connector's attachment handlin... | Not Provided | 2026-09-25 | 2026-09-30 |
| CVE-2026-97243 json | Subscriber Broken Access Control in AllAble Connector <= 0.13.4 versions. | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-95600 json | Unauthenticated Sensitive Data Exposure in TrustedLogin Connector <= 2.0.3 versions. | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-94627 json | vLLM Mooncake connector through 0.29.0 fails to properly manage GPU KV cache block ownership when concurrent child requests s... | Not Provided | 2026-09-21 | 2026-09-22 |