VDB

CVE-2026-88035

CVE-2026-88035 PUBLISHED CVSS 5.7 MEDIUM

Reported by mongodb · Published September 10, 2026

A size check in the client-side authentication path of the MongoDB C Driver can wrap around, so an unusually large user-name value is accepted and copied past the end of a small buffer. A party able to set the driver's connection settings may cause the application that embeds the driver to terminate unexpectedly. Reaching this code requires a build in which the optional external SASL authentication backend is present and a connection configured to use it.

Risk Scores

CVSS 4.0
5.7
CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
MongoDBC Driver2.2.0
MongoDBC Driver2.2.0

Timeline

  • Sep 10, 2026 Coalition ESS Score
  • Sep 10, 2026 CVE Published
  • Sep 11, 2026 EPSS Score
  • Sep 16, 2026 CVE Updated

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›