VulnSea

mongosql_transition_readiness_tool vulnerabilities

CVEs whose affected-version data names the mongosql_transition_readiness_tool package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

3 CVEsRSS

CVE-2026-76798Medium· 6.3
3w ago

The MongoSQL Transition Readiness Tool writes query text and user names read from BI Connector log files into its generated HTML report without encoding them for that output context

The MongoSQL Transition Readiness Tool writes query text and user names read from BI Connector log files into its generated HTML report without encoding them for that output context. A user able to issue queries through the BI Connector …

Sunlitmongodb · mongosql_transition_readiness_toolEPSS 0.21%via NVD
CVE-2026-76797Medium· 6.3
3w ago

The MongoSQL Transition Readiness Tool writes database and collection names into its generated CSV reports without neutralizing leading characters that spreadsheet applications treat as formulas

The MongoSQL Transition Readiness Tool writes database and collection names into its generated CSV reports without neutralizing leading characters that spreadsheet applications treat as formulas. A user with write privileges on the clust…

Sunlitmongodb · mongosql_transition_readiness_toolEPSS 0.25%via NVD
CVE-2026-76794Medium· 4.6
3w ago

MongoSQL Transition Readiness Tool does not sufficiently encode database metadata before including it in generated HTML

MongoSQL Transition Readiness Tool does not sufficiently encode database metadata before including it in generated HTML. A MongoDB user with write access can introduce crafted metadata that may cause script code to run when another user …

Sunlitmongodb · mongosql_transition_readiness_toolEPSS 0.17%via NVD
mongosql_transition_readiness_tool vulnerabilities (CVEs) · VulnSea