CVE-2026-93762

LOWCVSS 9.2 · CRITICAL

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Mongoid contains an unsafe reflection weakness in the query path used for embedded documents. An application that passes an externally supplied field name to certain in-memory query methods may allow an unauthenticated party to obtain unintended disclosure of stored document data and to permanently remove stored records.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-470

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-09-21: 209-21
Referenced assets2 URLs
Full discourse2 posts
  • Daily CyberSecurity@Daily_CyberSec

    Critical MongoDB driver vulnerabilities, including CVE-2026-93762, expose systems to data loss and DoS. Learn about these flaws and patch immediately. #MongoDB #Cybersecurity #Vulnerability #Infosec #CVE https://securityonline.info/mongodb-driver-vulnerabilities-cve/

    01051365
    13.0K followersView on X
  • Cybersecurity News DE@cybsecuritynews

    #schwachstellen CVE-2026-93762: Kritische Mongoid-Schwachstelle gefährdet eingebettete Dokumente #cve202693762 #mongodb #mongoid #ruby https://cybersecurity-news.de/cve-2026-93762-mongoid-kritische-schwachstelle

    0000011
    12 followersView on X

Explore more