THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-18694 (HIGH 7.1) — An issue in MongoDB Server's geospatial query processing could allow an authenticated user with write privileges to cause certain malformed geometry data to be stored and later processed without proper validation. Subsequent queries against this data could then result in the serv

[NVD] CVE-2026-18694 (HIGH 7.1) — An issue in MongoDB Server's geospatial query processing could allow an authenticated user with write privileges to cause certain malformed geometry data to be stored and later processed without proper validation. Subsequent queries against this data could then result in the serv

mednvdPublished 2026-08-11

CVE-2026-18694 CVSS: 7.1 HIGH Published: 2026-08-11T19:17:23.580

An issue in MongoDB Server's geospatial query processing could allow an authenticated user with write privileges to cause certain malformed geometry data to be stored and later processed without proper validation. Subsequent queries against this data could then result in the server accessing memory outside its intended bounds. This

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-18694