CyberRota
← Ana sayfaya dön

CVE-2026-13065

MEDIUM · CVSS 6.5

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-07-22T20:16:44.670 · Çekilme zamanı: 2026-07-23T06:10:55.375961+00:00

CyberRota Yorumu

Detaylı analiz gerekiyor.

CVE
CVE-2026-13065
Severity
MEDIUM
CVSS
6.5
EPSS
Yok

Orijinal NVD Açıklaması

A user with read-only privileges is able to craft an aggregation pipeline using the $linearFill window function operator with a specific sortBy expression type to cause the mongod process to terminate abnormally, resulting in denial of service. The issue stems from insufficient validation of sort specifications during execution.