CVE-2026-103546: low-severity vulnerability in Mongodb Controllers for Kubernetes
Improper validation of Ops Manager configuration in MongoDB Kubernetes Operator
Published · Updated
8Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 2.3epss 0.2%
exploitation probability
0.2%top 96% of all CVEs
observed exploitation
nono source reports it
In MongoDB Controllers for Kubernetes, insufficient validation of Ops Manager backup configuration may allow a user who can modify an OpsManager custom resource to cause unintended administrative changes in Ops Manager. This affects deployments using Enterprise Ops Manager backup reconciliation.
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N
Affected products
MongoDB, Inc. · Mongodb Controllers for Kubernetes