Mongodb Entity Framework Core Provider — known CVE vulnerabilities
Every CVE whose affected-product data names Mongodb Entity Framework Core Provider, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (3)
CVE-2026-92756 — CVSS 5.5 (medium): Applications built on MongoDB Entity Framework Core Provider which combine independent encryption settings and this provider's encryption…
CVE-2026-92757 — CVSS 5.5 (medium): Applications built on MongoDB Entity Framework Core Provider which place a database name in the connection string may inadvertently disable…
CVE-2026-92758 — CVSS 5.5 (medium): If logging mode is set to DEBUG or a malformed MongoDB connection string is used, application logs may collect sensitive information (if in…