Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3hrm-h2m4-hcr8

Опубликовано: 22 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.1
CVSS3: 6.5

Описание

An authenticated user can cause excessive CPU consumption or out-of-memory conditions on a MongoDB server by sending a crafted Queryable Encryption find payload containing an unvalidated field used to control an internal computation loop. The resulting resource exhaustion degrades availability for other operations.

An authenticated user can cause excessive CPU consumption or out-of-memory conditions on a MongoDB server by sending a crafted Queryable Encryption find payload containing an unvalidated field used to control an internal computation loop. The resulting resource exhaustion degrades availability for other operations.

EPSS

Процентиль: 5%
0.00154
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-770

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 1 месяца назад

An authenticated user can cause excessive CPU consumption or out-of-memory conditions on a MongoDB server by sending a crafted Queryable Encryption find payload containing an unvalidated field used to control an internal computation loop. The resulting resource exhaustion degrades availability for other operations.

CVSS3: 6.5
nvd
около 1 месяца назад

An authenticated user can cause excessive CPU consumption or out-of-memory conditions on a MongoDB server by sending a crafted Queryable Encryption find payload containing an unvalidated field used to control an internal computation loop. The resulting resource exhaustion degrades availability for other operations.

CVSS3: 6.5
debian
около 1 месяца назад

An authenticated user can cause excessive CPU consumption or out-of-me ...

EPSS

Процентиль: 5%
0.00154
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-770