8.7
/ 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Description
A series of specifically crafted, unauthenticated messages can exhaust available memory and crash a MongoDB server.
AI Analysis
Pre-Authentication Memory Exhaustion Denial of Service vulnerability in MongoDB Server
Basic Information
ID
CVE-2026-25611
Source
mongodb
Published
Feb 10, 2026 at 17:52
Affected Product
Vendor
MongoDB Inc
Product
MongoDB Server
Version
8.2
Affected Versions
MongoDB Inc MongoDB Server 8.2
MongoDB Inc MongoDB Server 8.0
MongoDB Inc MongoDB Server 7.0
MongoDB Inc MongoDB Server 8.0
MongoDB Inc MongoDB Server 7.0
CWE Classification
AI Assessment
AI Score
8.7 / 10
AI Severity
High
Vendor
MongoDB Inc
Product
MongoDB Server
Version
7.0, 8.0, 8.2