Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-13069

MEDIUM NVD
CVSS Score 6.5
Severity MEDIUM
Published Jul 22, 2026
Vendor unknown

Description

An authenticated user can cause excessive CPU consumption or out-of-memory conditions on a MongoDB server by sending a crafted Queryable Encryption find payload containing an unvalidated field used to control an internal computation loop. The resulting resource exhaustion degrades availability for other operations.

References