Retour à la veille

CVE-2026-13075

Publié : 22 juillet 2026
Modifié : 22 juillet 2026
Lien officiel NVD
Score CVSS
6.5
MEDIUM

Description détaillée

An authenticated user can cause the mongod process to be terminated by the operating system under memory pressure via the $rankFusion and $scoreFusion aggregation stages. The issue originates in the server's error-handling path and requires the ability to run aggregation queries.

Vecteur d'attaque (CVSS)

Vecteur brut :CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Références et Patchs