MongoDB: MongoBleed CVE-2025-14847

Verbatim from New MongoDB Flaw Lets Unauthenticated Attackers Read Uninitialized Memory:

The vulnerability, tracked as CVE-2025-14847 (CVSS score: 8.7), has been described as a case of improper handling of length parameter inconsistency, which arises when a program fails to appropriately tackle scenarios where a length field is inconsistent with the actual length of the associated data.

Comments

Popular Posts