Beveiligingsadvies

CVE-2026-13072

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-22 19:14:15
Laatst bijgewerkt 2026-07-24 03:56:09
Toegewezen door mongodb
CVSS-score 9.2
Status PUBLISHED

Beschrijving

When compute mode is enabled on a standalone mongod instance, insufficient validation of externally sourced BSON data during aggregation pipeline processing can result in memory corruption, potentially leading to process termination or other unintended behavior. This configuration is non-default and requires explicit enablement at startup.