Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-18706

MEDIUM NVD
CVSS Score 6.6
Severity MEDIUM
Published Aug 11, 2026
Vendor unknown

Description

An issue in MongoDB Server's $graphLookup aggregation stage could allow an authenticated user able to issue aggregation and memory-management commands to cause an internal reference to be used after the underlying memory has been freed. This could result in a server crash or, potentially, execution of unintended code.

References