HIGH 7.1 NVD

CVE-2026-93763

A protection mechanism failure in the object-document mapper's encryption configuration generation can cause fields that an application declared for client-side

A protection mechanism failure in the object-document mapper's encryption configuration generation can cause fields that an application declared for client-side field-level encryption to be written and kept in cleartext, without any error or warning. A party holding ordinary read access to the database can then read values that were intended to be protected from that party. This may result in unintended disclosure of sensitive information.

References

Published: 2026-09-18 · Source: NVD · Feed updated: 2026-09-18
This high severity vulnerability with a CVSS score of 7.1 was published on 2026-09-18 via NVD.
vulnfeed aggregates 14649 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.