Critical MongoDB Vulnerability Exposes Sensitive Data via zlib Compression
ID: b6cdd9ef-1474-5172-a7e8-3910fe2faa05
STIX ID: report--b6cdd9ef-1474-5172-a7e8-3910fe2faa05
Feed Name: ThreatCluster
Threat Score
**CVE-2025-14847**: A vulnerability in MongoDB's zlib compression implementation allows unauthenticated attackers to extract uninitialized heap memory from database servers, potentially exposing sensitive data; the flaw affects multiple MongoDB versions and is reported by sources including Cyberpress, Wiz, Gbhackers, Cybersecuritynews, and Aikido.Dev.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
