MongoDB Server vulnerability

An issue in MongoDB Server could allow an authenticated user with limited, database-scoped privileges to modify diagnostic logging settings that affect the entire server rather than just the intended database. This could allow suppression of diagnostic logging server-wide, potentially obscuring unauthorized activity, or degrade operational monitoring by causing excessive log volume.

Published 11 Aug 2026Updated 16 Sep 20261 sources
CVSS 5.3

Source timeline

CVE record published by NVDView source ↗