Vulnerabilities > Mongodb > OPS Manager > 4.2.23

DATE CVE VULNERABILITY TITLE RISK
2021-02-11 CVE-2021-20335 Cleartext Transmission of Sensitive Information vulnerability in Mongodb OPS Manager
For MongoDB Ops Manager versions prior to and including 4.2.24 with multiple OM application servers, that have SSL turned on for their MongoDB processes, the upgrade to MongoDB Ops Manager versions prior to and including 4.4.12 triggers a bug where Automation thinks SSL is being turned off, and can disable SSL temporarily for members of the cluster.
low complexity
mongodb CWE-319
4.6