MongoDB

MongoDB

192 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.26%
  • Veröffentlicht 11.08.2026 18:47:05
  • Zuletzt bearbeitet 16.09.2026 15:14:48

An issue in MongoDB Server could allow an authenticated user with a limited database-scoped role to perform an action against protected system collections that their assigned privileges should not permit. This could result in critical system collecti...

  • EPSS 0.29%
  • Veröffentlicht 11.08.2026 18:46:35
  • Zuletzt bearbeitet 16.09.2026 15:18:00

An issue in MongoDB Server's query planner could allow an authenticated user with read-level privileges to cause the server process to terminate unexpectedly by submitting a specially formed query against a collection with a text index. This could re...

  • EPSS 0.23%
  • Veröffentlicht 11.08.2026 18:46:02
  • Zuletzt bearbeitet 16.09.2026 15:16:15

An issue in MongoDB Server's intra-cluster connection setup could allow a party with suitable network access to influence which authentication mechanism is used when one replica set member connects to another. Under certain conditions, this could cau...

  • EPSS 0.21%
  • Veröffentlicht 11.08.2026 18:43:59
  • Zuletzt bearbeitet 16.09.2026 15:18:38

An issue in MongoDB Server could allow an authenticated user with limited, database-scoped privileges to modify diagnostic logging settings that affect the entire server rather than just the intended database. This could allow suppression of diagnost...

  • EPSS 0.27%
  • Veröffentlicht 11.08.2026 18:42:43
  • Zuletzt bearbeitet 16.09.2026 15:16:51

An issue in MongoDB Server's geospatial query processing could allow an authenticated user with write privileges to cause certain malformed geometry data to be stored and later processed without proper validation. Subsequent queries against this data...

  • EPSS 0.28%
  • Veröffentlicht 11.08.2026 18:41:10
  • Zuletzt bearbeitet 16.09.2026 15:19:39

An issue in MongoDB Server's JavaScript scripting engine could allow an authenticated user with write privileges to cause code they control to be executed within the query scope of other users, through a specially crafted stored value processed durin...

  • EPSS 0.29%
  • Veröffentlicht 11.08.2026 18:40:35
  • Zuletzt bearbeitet 16.09.2026 15:17:34

An issue in MongoDB Server's applyOps command could allow an authenticated user with specific non-default privileges to perform certain data-definition operations, such as dropping or modifying collections, against collections they do not have permis...

  • EPSS 0.29%
  • Veröffentlicht 11.08.2026 18:40:07
  • Zuletzt bearbeitet 16.09.2026 15:18:14

An issue in MongoDB Server's geospatial validation could allow an authenticated user with write privileges to cause an internal reference to be used after the underlying memory has been freed, through concurrent operations against a collection using ...

  • EPSS 0.3%
  • Veröffentlicht 11.08.2026 18:39:35
  • Zuletzt bearbeitet 16.09.2026 15:18:29

An issue in MongoDB Server's query subsystem could allow an authenticated user with read privileges to cause the server process to terminate unexpectedly by submitting a specially formed query filter. This could result in a denial of service.

  • EPSS 0.32%
  • Veröffentlicht 11.08.2026 18:39:03
  • Zuletzt bearbeitet 16.09.2026 15:17:42

An issue in MongoDB Server's aggregation framework could allow an unauthenticated party to cause a mongos (router) process to terminate unexpectedly by submitting a specially formed aggregation command. This could result in a denial of service, disru...