Vulnerabilities
Vulnerable Software
Applications built on MongoDB Entity Framework Core Provider which combine independent encryption settings and this provider's encryption settings may silently lose TLS and schema-map settings leading to protected fields being stored unencrypted in the database.
CVSS Score
6.8
EPSS Score
0.001
Published
2026-09-17
Applications built on MongoDB Entity Framework Core Provider which place a database name in the connection string may inadvertently disable field level encryption.
CVSS Score
6.8
EPSS Score
0.001
Published
2026-09-17
If logging mode is set to DEBUG or a malformed MongoDB connection string is used, application logs may collect sensitive information (if in use) such as passwords and AWS secure access keys.
CVSS Score
5.7
EPSS Score
0.002
Published
2026-09-17


Contact Us

Shodan ® - All rights reserved