MongoBleed Vulnerability in MongoDB Exploited by Attackers

MongoBleed Vulnerability in MongoDB Exploited by Attackers

First seen 29 Dec 2025, 16:17 UTC Feeds.FeedburnerSecurityweek 100% similarity 25.9

Article Content

Browse articles
ThreatCluster

A new vulnerability, dubbed MongoBleed, has been identified in MongoDB, allowing unauthenticated remote attackers to leak sensitive information from affected servers. The flaw has been exploited in attacks, with a proof-of-concept (PoC) exploit released shortly after its discovery, enabling the extraction of session tokens, passwords, and API keys.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story