GHSA-3hrm-h2m4-hcr8HighCVSS 6.5

An authenticated user can cause excessive CPU consumption or out-of-memory conditions on a...

Published
July 22, 2026
Last Modified
July 22, 2026

🔗 CVE IDs covered (1)

📋 Description

An authenticated user can cause excessive CPU consumption or out-of-memory conditions on a MongoDB server by sending a crafted Queryable Encryption find payload containing an unvalidated field used to control an internal computation loop. The resulting resource exhaustion degrades availability for other operations.

🔗 References (3)