VendorsMongoDBjava_driverall versions
Vulnerabilities

MongoDB Java Driver

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2026-88033
GridFS data disclosure and deletion via query-operator injection in file IDs in the MongoDB Java Driver
Published 2026-09-10 · Analyzed
8.3EPSS 0.003
CVE-2026-88032
Application denial of service via cancellation race in reactive client-side encryption in MongoDB Java Driver
Published 2026-09-10 · Analyzed
8.2EPSS 0.002
CVE-2021-20328
MongoDB Java driver client-side field level encryption not verifying KMS host name
Published 2021-02-25 · Modified
6.8EPSS 0.004