Security Advisory

CVE-2018-20805

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-11-23 15:20:13
Last updated 2024-09-17 03:08:29
Assigner mongodb
State PUBLISHED

Description

A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which perform an $elemMatch . This issue affects MongoDB Server v4.0 versions prior to 4.0.5 and MongoDB Server v3.6 versions prior to 3.6.10.