Every CVE whose affected-product data names Mongodb Libmongocrypt, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (3)
CVE-2026-84971 — CVSS 6.5 (medium): Improper handling of an unexpected value size in the decryption path of a client-side encryption library can cause a failed internal check…
CVE-2026-81523 — CVSS 4.4 (medium): A missing input-validation issue in MongoDB libmongocrypt's automatic-encryption context setup allows a caller-supplied database identifier…
CVE-2026-84962 — CVSS 4.2 (medium): An unauthorized user with key vault write access may cause an authorized client to issue arbitrary authenticated Google Cloud KMS API calls…