CVE-2026-82076
MEDIUM
NVD
CVSS Score
6.5
Severity
MEDIUM
Published
Sep 08, 2026
Vendor
unknown
Description
An integer overflow in the query planning component of MongoDB Server can allow an authenticated user with ordinary database-level read/write privileges to bypass an internal resource limit. Submitting a specially crafted query causes the server to consume memory without bound during query planning, and the resulting exhaustion terminates the server process. This may result in a denial of service affecting all databases served by the affected node.