Vulnerabilities > Mongodb > C Driver > High

DATE CVE VULNERABILITY TITLE RISK
2024-08-07 CVE-2024-7553 Unspecified vulnerability in Mongodb
Incorrect validation of files loaded from a local untrusted directory may allow local privilege escalation if the underlying operating systems is Windows.
local
low complexity
mongodb
7.8
2024-01-12 CVE-2023-0437 Infinite Loop vulnerability in Mongodb C Driver
When calling bson_utf8_validate on some inputs a loop with an exit condition that cannot be reached may occur, i.e.
network
low complexity
mongodb CWE-835
7.5
2023-08-29 CVE-2021-32050 Information Exposure Through Log Files vulnerability in Mongodb products
Some MongoDB Drivers may erroneously publish events containing authentication-related data to a command listener configured by an application.
network
low complexity
mongodb CWE-532
7.5
2023-02-21 CVE-2022-48282 Deserialization of Untrusted Data vulnerability in Mongodb C# Driver
Under very specific circumstances (see Required configuration section below), a privileged user is able to cause arbitrary code to be executed which may cause further disruption to services.
network
low complexity
mongodb CWE-502
7.2