CVE-2026-103546: Mongodb, Inc MongoDB Controllers For Kubernetes

Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.

In MongoDB Controllers for Kubernetes, insufficient validation of Ops Manager backup configuration may allow a user who can modify an OpsManager custom resource to cause unintended administrative changes in Ops Manager. This affects deployments using Enterprise Ops Manager backup reconciliation.

Affected products

  • Mongodb, Inc MongoDB Controllers For Kubernetes: before 1.13.0 (fixed in 1.13.0)

Published 2026-10-05. Last modified 2026-10-06.