Security: mongodb/libmongocrypt
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
-
Authenticated KMS request forgery via CRLF injection in GCP key identifier stringsGHSA-j29g-r9cq-fh35 published
Sep 3, 2026 by kevinAlbsModerate -
Cross-tenant database retargeting via dot/NUL injection in namespace strings in libmongocryptGHSA-8g9w-8cw9-q38w published
Aug 27, 2026 by kevinAlbsModerate -
Persistent client crash loop via undersized FLE2 insert-update ciphertext in decryption pathGHSA-8g5h-p67q-9m5j published
Sep 3, 2026 by kevinAlbsHigh
Learn more about advisories related to mongodb/libmongocrypt in the GitHub Advisory Database