MongoDB Security Advisory (AV26-945)
Canada's Cyber Centre warns that multiple Mongoid and MongoDB C Driver versions have vulnerabilities.
The Canadian Centre for Cyber Security issued advisory AV26-945 on September 21, 2026. As of September 17, 2026, multiple versions of Mongoid and the MongoDB C Driver are affected by vulnerabilities. The centre tells users and administrators to review MongoDB's linked advisory and apply necessary updates. The alert does not name specific CVEs or report exploitation.
- Advisory AV26-945 was published on September 21, 2026.
- Multiple Mongoid and MongoDB C Driver versions are affected as of September 17.
- No CVE identifiers or exploitation details are included.
- Administrators are urged to review MongoDB guidance and update.
Full article57 words · extracted from cyber.gc.ca · click to collapse
Serial number: AV26-945
Date: September 21, 2026
As of September 17, 2026, MongoDB is affected by vulnerabilities in the following products:
- Mongoid
- Multiple versions
- C Driver
- Multiple versions
The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become available.
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyber.gc.ca/en/alerts-advisories/mongodb-security-advisory