logo

MongoDB Server Vulnerability Wave Hits Document Databases

ID: 12f5dfc5-6470-57a0-ad70-4a28f95a62cf

STIX ID: report--12f5dfc5-6470-57a0-ad70-4a28f95a62cf

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2026-06-17

Date Updated: 2026-06-17

Author: Do Son

...
...

This advisory describes four security vulnerabilities in MongoDB Server — two high-severity memory-related flaws (one use-after-free enabling memory disclosure or crashes, and one unauthenticated crash due to BSON validation recursion) and two authenticated issues that can corrupt metadata or crash the server. Multiple release branches are affected; fixed builds (e.g., 8.0.26, 8.2.11, 8.3.4) are available and administrators are urged to patch immediately, prioritizing the unauthenticated crash bug.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.