Known Vulnerabilities for Database Tools by Mongodb
Listed below are 1 of the newest known vulnerabilities associated with "Database Tools" by "Mongodb".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-46513 json | Frogman provides headless PBX control through MCP and HTTP API. Prior to 1.6.2, Frogman stored API tokens generated by Tools/... | Not Provided | 2026-07-16 | 2026-07-17 |
| CVE-2026-44753 json | SAP HANA Database (user self service tools) allows an unauthenticated user to send specially crafted requests that produce di... | Not Provided | 2026-07-14 | 2026-07-14 |
| CVE-2026-44552 json | Open WebUI is a self-hosted artificial intelligence platform designed to operate entirely offline. Prior to 0.9.0, the tool_s... | Not Provided | 2026-05-15 | 2026-05-15 |
| CVE-2026-41936 json | Vvveb before version 1.0.8.2 contains an XML external entity (XXE) injection vulnerability in the admin Tools/Import feature ... | Not Provided | 2026-05-06 | 2026-05-06 |
| CVE-2026-41160 json | EspoCRM is an open source customer relationship management application. Prior to 9.3.5, a business logic flaw (Broken Access ... | Not Provided | 2026-05-28 | 2026-05-28 |
| CVE-2026-14261 json | A vulnerability in the Xerte Online Tools allows for authentication bypass and remote code execution via reinstallation throu... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-12048 json | Stored cross-site scripting in pgAdmin 4's error-rendering and plan-node-rendering paths. Text returned by a PostgreSQL serve... | Not Provided | 2026-06-19 | 2026-06-22 |
| CVE-2020-37226 json | Joomla J2 JOBS 1.3.0 contains an authenticated SQL injection vulnerability that allows authenticated attackers to manipulate ... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2020-7924 json | Usage of specific command line parameter in MongoDB Tools which was originally intended to just skip hostname checks, may res... | 6.5 - MEDIUM | 2021-04-12 | 2021-04-21 |
| CVE-2016-20076 json | WordPress Simple-Backup 2.7.11 contains multiple vulnerabilities that allow unauthenticated attackers to delete arbitrary fil... | 6.5 - MEDIUM | 2026-06-15 | 2026-06-15 |