CyberRota Analysis
AI-GeneratedMongoDB's server-side JavaScript engine is vulnerable due to improper handling of DBPointer objects during BSON serialization, which may inadvertently expose internal process memory contents to clients. This information disclosure risk primarily affects deployments utilizing server-side JavaScript. Organizations using MongoDB with Java should prioritize addressing this vulnerability to mitigate potential data leaks.
Original NVD Description
Improper handling of DBPointer objects during BSON serialization in MongoDB's server-side JavaScript engine can result in internal process memory contents being included in data returned to the client. This constitutes an unintended information disclosure affecting deployments that use server-side JavaScript.
Related CVEs
Other vulnerabilities affecting the same vendor(s)