Security Advisory

CVE-2025-1756

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-27 15:28:11
Last updated 2025-02-27 16:06:31
Assigner mongodb
State PUBLISHED

Description

mongosh may be susceptible to local privilege escalation under certain conditions potentially enabling unauthorized actions on a users system with elevated privilege, when a crafted file is stored in C:node_modules. This issue affects mongosh prior to 2.3.0