CVE-2026-103546: Mongodb, Inc MongoDB Controllers For Kubernetes
Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.
In MongoDB Controllers for Kubernetes, insufficient validation of Ops Manager backup configuration may allow a user who can modify an OpsManager custom resource to cause unintended administrative changes in Ops Manager. This affects deployments using Enterprise Ops Manager backup reconciliation.
Affected products
- Mongodb, Inc MongoDB Controllers For Kubernetes: before 1.13.0 (fixed in 1.13.0)
Published 2026-10-05. Last modified 2026-10-06.