Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%

MongoDB Inc. — Vulnerabilities & Security Advisories 50

Browse all 50 CVE security advisories affecting MongoDB Inc.. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CVE IDTitleCVSSSeverityPaused
CVE-2020-7927 Potential privilege escalation in Ops Manager API — MongoDB Ops ManagerCWE-648 8.1 High2020-11-23
CVE-2018-20803 Infinite loop in aggregation expression — MongoDB ServerCWE-835 6.5 Medium2020-11-23
CVE-2020-7928 Improper neutralization of null byte leads to read overrun — MongoDB ServerCWE-158 6.5 Medium2020-11-23
CVE-2019-2393 Crash while joining collections with $lookup — MongoDB ServerCWE-416 6.5 Medium2020-11-23
CVE-2019-20923 Crash while handling internal Javascript exception types — MongoDB ServerCWE-749 6.5 Medium2020-11-23
CVE-2019-20924 Invariant in IndexBoundsBuilder — MongoDB ServerCWE-394 6.5 Medium2020-11-23
CVE-2019-2392 $mod can result in undefined behavior — MongoDB ServerCWE-190 6.5 Medium2020-11-23
CVE-2018-20805 Invariant with $elemMatch — MongoDB ServerCWE-834 6.5 Medium2020-11-23
CVE-2018-20802 Post-auth queries on compound index may crash mongod — MongoDB ServerCWE-394 6.5 Medium2020-11-23
CVE-2018-20804 Invariant failure in applyOps — MongoDB ServerCWE-20 6.5 Medium2020-11-23
CVE-2020-7926 Specific query can cause a DoS against MongoDB Server — MongoDB ServerCWE-755 6.5 Medium2020-11-23
CVE-2020-7925 Denial of Service when processing malformed Role names — MongoDB ServerCWE-475 7.5 High2020-11-23
CVE-2020-7923 Specific GeoQuery can cause DoS against MongoDB Server — MongoDB ServerCWE-755 6.5 Medium2020-08-21
CVE-2019-2388 Potential exposure of log information in Ops Manager — MongoDB Ops ManagerCWE-425 5.8 Medium2020-05-13
CVE-2020-7921 Administrative action may disable enforcement of per-user IP whitelisting — MongoDB ServerCWE-182 4.6 Medium2020-05-06
CVE-2020-7922 Kubernetes Operator generates potentially insecure certificates — MongoDB Enterprise Kubernetes OperatorCWE-295 6.4 Medium2020-04-09
CVE-2019-2391 JS-bson may incorrectly serialise some requests — js-bsonCWE-502 4.2 Medium2020-03-31
CVE-2019-2389 Process termination via PID file manipulation — MongoDB ServerCWE-732 5.3 Medium2019-08-30
CVE-2019-2390 Code execution on Windows via OpenSSL engine injection — MongoDB ServerCWE-94 8.2 High2019-08-30
CVE-2019-2386 Authorization session conflation — MongoDB ServerCWE-285 7.1 High2019-08-06

This page lists every published CVE security advisory associated with MongoDB Inc.. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.