87,000+ MongoDB Instances Vulnerable to MongoBleed Flaw Exposed Online – PoC Exploit Released
ID: d3bd1720-c078-58c2-95c7-244471ca9ef7
STIX ID: report--d3bd1720-c078-58c2-95c7-244471ca9ef7
Feed Name: cybersecurityNews.com
High-severity vulnerability CVE-2025-14847 ("MongoBleed") in MongoDB's zlib decompression allows unauthenticated remote attackers to read uninitialized heap memory and potentially extract sensitive data (credentials, tokens, PII). A wide range of versions (MongoDB 3.6 through 8.2 series) are affected; a public PoC exists and Censys identified ~87,000 potentially vulnerable internet-exposed instances. MongoDB published patches (8.2.3, 8.0.17, 7.0.28, 6.0.27, 5.0.32, 4.4.30) and temporary mitigations include disabling zlib compression and restricting network access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
