{"id":"CVE-2026-93761","published":"2026-09-18T18:18:34.917","lastModified":"2026-09-24T16:06:04.550","description":"An inefficient regular expression complexity issue in the in-memory query evaluation component of the Mongoid library may allow an unauthenticated party to cause excessive processing within an embedding application process. Applications that place user-supplied text into a pattern-matching query condition on an embedded association may become unresponsive.","cvssScore":7.5,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","cwes":["CWE-1333"],"vendors":["mongodb"],"products":["mongoid"],"references":[{"url":"https://jira.mongodb.org/browse/MONGOID-5981","tags":["Permissions Required"]}],"exploitRefs":[],"hasPoc":false,"ai":null}