CVE-2025-14847 MongoBleed in the Wild: Identifying MongoDB Exposure and Exploitation with Network Metadata by Fabien Guillot
ID: 24aa85d1-76ba-5b6c-8678-5df19e89df84
STIX ID: report--24aa85d1-76ba-5b6c-8678-5df19e89df84
Feed Name: Vectra AI Blog
Threat Score
MongoBleed (CVE-2025-14847) is a pre-auth, network-reachable MongoDB vulnerability that allows unauthenticated attackers to read server heap memory via zlib header length mismatches; a public proof-of-concept exists, and fixed releases across supported branches are available. The report details exposure scale, practical hunting and detection using Vectra network metadata and Suricata rules, and recommends immediate patching to specified fixed versions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
