CVE-2026-18698 | MongoDB Server up to 7.0.39/8.0.28/8.3.7 improper authorization
A vulnerability identified as very critical has been detected in MongoDB Server up to 7.0.39/8.0.28/8.3.7. Affected is an unknown function. This manipulation causes improper authorization.
This vulnerability appears as CVE-2026-18698. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.