9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
CVE-2025-23061 - Mongoose Command Injection A proof of concept for the Command Injection vulnerability in Mongoose = 7.0.0 = 8.0.0 = 14 - MongoDB running locally or accessible via connection string Installation bash Install dependencies npm install...
Basic Information
ID
8998C96E-4ACA-5469-AEBD-CCDA66BA08B6
Published
Dec 11, 2025 at 07:50
Modified
Dec 11, 2025 at 07:59