Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-273c-743j-vc74

Опубликовано: 22 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 4.3

Описание

An authenticated user with read-only privileges can cause the mongod process to terminate abnormally by issuing a crafted aggregation command, resulting in denial of service for all connected clients until the process is restarted. The issue stems from an internal engine selection inconsistency triggered by a specific combination of aggregation options.

An authenticated user with read-only privileges can cause the mongod process to terminate abnormally by issuing a crafted aggregation command, resulting in denial of service for all connected clients until the process is restarted. The issue stems from an internal engine selection inconsistency triggered by a specific combination of aggregation options.

EPSS

Процентиль: 12%
0.00212
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-617

Связанные уязвимости

CVSS3: 4.3
ubuntu
8 дней назад

An authenticated user with read-only privileges can cause the mongod process to terminate abnormally by issuing a crafted aggregation command, resulting in denial of service for all connected clients until the process is restarted. The issue stems from an internal engine selection inconsistency triggered by a specific combination of aggregation options.

CVSS3: 4.3
nvd
8 дней назад

An authenticated user with read-only privileges can cause the mongod process to terminate abnormally by issuing a crafted aggregation command, resulting in denial of service for all connected clients until the process is restarted. The issue stems from an internal engine selection inconsistency triggered by a specific combination of aggregation options.

CVSS3: 4.3
debian
8 дней назад

An authenticated user with read-only privileges can cause the mongod p ...

EPSS

Процентиль: 12%
0.00212
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-617