What is CVE-2026-18703?
CVE-2026-18703 is an authentication bypass issue in MongoDB Server where a user with a valid client certificate can authenticate using that method even if the administrator has restricted authentication to other mechanisms. Upgrading to the latest patched version of MongoDB is recommended to mitigate this issue.
Azərbaycanca: CVE-2026-18703 MongoDB Server-də autentifikasiya bypass zəifliyidir. Administrator serveri sertifikat əsaslı autentifikasiyaya qadağa qoysa belə, etibarlı müştəri sertifikatı olan istifadəçi bu məhdudiyyəti keçərək daxil ola bilir. Bu problemi aradan qaldırmaq üçün MongoDB-nin son versiyasına yeniləmə etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-287
FAQ2
What security issue does CVE-2026-18703 cause in MongoDB Server?
CVE-2026-18703 is an authentication bypass issue in MongoDB Server where a user with a valid client certificate can authenticate using that method even if the administrator has restricted authentication to other mechanisms.
What measure should be taken to mitigate CVE-2026-18703?
Upgrading to the latest patched version of MongoDB is recommended to mitigate this issue.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.