CVE-2026-6915
An authorization flaw in the user management command could allow an authenticated user to make limited changes to authentication-related data associated with another user account. This could affect how authentication is performed for the impacted account.
More information : https://jira.mongodb.org/browse/SERVER-119679
