216.73.216.133

CVE-2025-13507

· Published 25/11/2025 05:16 · Modified 05/12/2025 20:23

Labels: CVE-2025-13507 2025-11-25CVE-2025-13507CWE-1284[email protected]

Essential information

Published
25/11/2025 05:16
Modified
05/12/2025 20:23
Author
Creator
CVSS
7.1 HIGH (v3) 7.1 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Inconsistent object size validation in time series processing logic may result in later processing of oversized BSON documents leading to an assert failing and process termination. This issue impacts MongoDB Server v7.0 versions prior to 7.0.26, v8.0 versions prior to 8.0.16 and MongoDB server v8.2 versions prior to 8.2.1.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
mongodb / mongodb cpe:2.3:a:mongodb:mongodb:*:*:*:*:-:*:*:*
mongodb / mongodb cpe:2.3:a:mongodb:mongodb:*:*:*:*:-:*:*:*
mongodb / mongodb cpe:2.3:a:mongodb:mongodb:*:*:*:*:-:*:*:*

References