CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. It affects MongoDB. Exploitation may require the attacker to be authenticated.
CVE
CVE-2026-9740
Severity
HIGH
CVSS
7.5
EPSS
0.34%
MongoDB
Original NVD Description
A vulnerability in MongoDB Server's BSON validation logic allows an unauthenticated user to crash the mongod process by sending a specially crafted message. The BSON validator's handling of certain nested binary data structures permits uncontrolled mutual recursion between validation functions, where each re-entry resets internal depth tracking.
Related CVEs
Other vulnerabilities affecting the same vendor(s)