logo

Mongobleed PoC Exploit Tool Released for MongoDB Flaw that Exposes Sensitive Data

ID: 5decfa32-62a4-560a-8e7c-7c9144809d5a

STIX ID: report--5decfa32-62a4-560a-8e7c-7c9144809d5a

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2025-12-27

Date Updated: 2026-04-21

Author: Guru Baran

...
...

A critical unauthenticated memory-leak vulnerability (CVE-2025-14847) in MongoDB's zlib decompression handling allows remote attackers to cause the server to treat uninitialized buffer memory as valid BSON data; the public Python PoC 'mongobleed' automates probing offsets to exfiltrate fragments such as system metrics, logs, Docker paths, and connection identifiers. Multiple MongoDB branches (5.0 through 8.2) are listed as affected with fixed releases available; operators are advised to patch, disable unauthenticated access, and monitor for scans on port 27017.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.