Skip to content
New MongoDB Vulnerability Lets Hackers Crash Any MongoDB Server

New MongoDB Vulnerability Lets Hackers Crash Any MongoDB Server

Cybersecuritynews •Abinaya • March 5, 2026

A high-severity vulnerability, CVE-2026-25611 (CVSS 7.5), has been discovered in MongoDB, allowing unauthenticated attackers to crash exposed servers using minimal bandwidth. According to Cato CTRL, it affects all MongoDB versions where compression is enabled (v3.4+, on by default since v3.6), including MongoDB Atlas.  Furthermore, Shodan data indicates that over 207,000 MongoDB instances are currently exposed […]

Extracted Entities

Attack Types (1)

Platforms (1)