New MongoDB Vulnerability Lets Hackers Crash Any MongoDB Server

A high-severity vulnerability, CVE-2026-25611 (CVSS 7.5), has been discovered in MongoDB, allowing unauthenticated attackers to crash exposed servers using minimal bandwidth. According to Cato CTRL, it affects all MongoDB versions where compression is enabled (v3.4+, on by default since v3.6), including MongoDB Atlas.  Furthermore, Shodan data indicates that over 207,000 MongoDB instances are currently exposed […]

The post New MongoDB Vulnerability Lets Hackers Crash Any MongoDB Server appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: