PT-2026-73379 · Bitnami · Mongodb

Published

2026-08-17

·

Updated

2026-08-17

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
An authenticated user with limited read privileges may be able to access documents from collections they are not authorized to read, due to an inconsistency in how the $graphLookup aggregation stage is evaluated during authorization and during execution. Affected scenarios involve collections referenced within existing view pipeline definitions.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BIT-MONGODB-2026-13060

Affected Products

Mongodb