CyberRota
← Ana sayfaya dön

CVE-2026-13074

MEDIUM · CVSS 5.3

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-07-22T20:16:46.057 · Çekilme zamanı: 2026-07-23T06:10:55.689717+00:00

CyberRota Yorumu

MongoDB kullanan sistemleri etkileyebilir. Uzaktan istismar edilebilir olabilir.

CVE
CVE-2026-13074
Severity
MEDIUM
CVSS
5.3
EPSS
Yok
MongoDB

Orijinal NVD Açıklaması

An unauthenticated remote client can cause excessive CPU consumption on a MongoDB server by sending a specific combination of parameters to the awaitable hello command in exhaust mode. The server's handling of this combination results in a response loop that bypasses normal throttling, allowing a small number of connections to degrade server availability.