What is CVE-2026-18694?
CVE-2026-18694 is a vulnerability in MongoDB Server's geospatial query processing. An authenticated user with write privileges could store malformed geometry data that bypasses validation. Subsequent queries against this data could lead to the server improperly accessing memory.
Azərbaycanca: CVE-2026-18694 MongoDB Server-in geospatial sorğu emalında boşluqdur. Yazma səlahiyyəti olan autentifikasiya olunmuş istifadəçi xüsusi hazırlanmış zədəli geometriya məlumatlarını yadda saxlaya bilər. Bu məlumat düzgün validasiya edilmədən sorğulanarsa, server yaddaşa icazəsiz giriş edə bilər.
Related CVEs
link basis: shared vendor: MongoDB
FAQ1
During which operation in MongoDB Server does CVE-2026-18694 occur?
This vulnerability occurs during geospatial query processing in MongoDB Server.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.