logo

CVE-2025-14847 MongoBleed in the Wild: Identifying MongoDB Exposure and Exploitation with Network Metadata by Fabien Guillot

ID: 24aa85d1-76ba-5b6c-8678-5df19e89df84

STIX ID: report--24aa85d1-76ba-5b6c-8678-5df19e89df84

Feed Name: Vectra AI Blog

Threat Score
88/100

Date Published: 2025-12-29

Date Updated: 2026-05-01

...
...

MongoBleed (CVE-2025-14847) is a pre-auth, network-reachable MongoDB vulnerability that allows unauthenticated attackers to read server heap memory via zlib header length mismatches; a public proof-of-concept exists, and fixed releases across supported branches are available. The report details exposure scale, practical hunting and detection using Vectra network metadata and Suricata rules, and recommends immediate patching to specified fixed versions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.