MongoDB Server Vulnerabilities
CVE security advisories and vulnerability history for MongoDB Server by MongoDB.
CVE security advisories and vulnerability history for MongoDB Server by MongoDB.
Last updated
MongoDB Server has 147 published CVE records since 2019, of which 1 are in CISA's Known Exploited Vulnerabilities catalog and 1 have a known public exploit. The average CVSS base score across scored CVEs is 6.8.
This page aggregates every publicly disclosed vulnerability (CVE) affecting MongoDB Server, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list. Affected platforms include macos, windows.
How the CVSS severity of MongoDB Server's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
In CISA’s Known Exploited Vulnerabilities catalog
1
One of MongoDB Server's CVEs is confirmed exploited in the wild.
Public exploits
1
One of MongoDB Server's CVEs has a known public exploit available.
Browse every MongoDB Server version named in a CVE, then pick one to see only the CVEs that affect it.
The CWE weakness categories most often found in MongoDB Server CVEs. Follow any weakness for its full explanation.
How many MongoDB Server CVEs were published each year.
Browse vulnerabilities for other products by MongoDB.
Common questions about MongoDB Server vulnerabilities.
Vulnerability data is sourced from the CVE Program; severity, KEV, and exploit signals are aggregated by RadicalNotion.AI.
Monitor new MongoDB Server vulnerabilities as they are disclosed, with AI-written analysis and remediation guidance.
147 CVEs
Showing 30 of 147