All 4 CVE vulnerabilities found in MongoDB Compass, with AI-generated Chinese analysis, references, and POCs.
Vendor: MongoDB Inc.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-1755 | MongoDB Compass may be susceptible to local privilege escalation in Windows CWE-426 | 7.5 | High | 2025-02-27 |
| CVE-2024-6376 | ejson shell parser in MongoDB Compass maybe bypassed CWE-20 | 7.0 | High | 2024-07-01 |
| CVE-2024-3371 | Insufficient validation of external input in Compass may enable MITM attacks CWE-360 | 7.1 | High | 2024-04-24 |
| CVE-2021-20334 | Local privilege escalation in MongoDB Compass for Windows CWE-269 | 4.8 | Medium | 2021-04-06 |
All 4 known CVE vulnerabilities affecting MongoDB Compass with full Chinese analysis, references, and POCs where available.