Beveiligingsadvies

CVE-2026-9740

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-06-09 22:43:44
Laatst bijgewerkt 2026-06-10 18:16:38
Toegewezen door mongodb
CVSS-score 8.7
Status PUBLISHED

Beschrijving

A vulnerability in MongoDB Server's BSON validation logic allows an unauthenticated user to crash the mongod process by sending a specially crafted message. The BSON validator's handling of certain nested binary data structures permits uncontrolled mutual recursion between validation functions, where each re-entry resets internal depth tracking.