What is CVE-2026-13065?
CVE-2026-13065 is a critical vulnerability in MongoDB where a read-only user can crash the mongod process using the $linearFill operator with a crafted sortBy expression. This leads to a denial of service, and upgrading to the latest stable MongoDB version is recommended.
Azərbaycanca: CVE-2026-13065 MongoDB-də aşkar edilmiş kritik boşluqdur. Yalnız oxuma icazəli istifadəçi $linearFill operatoru ilə xüsusi sortBy ifadəsindən istifadə edərək mongod prosesini çökdürə bilər. MongoDB-i ən son stabil versiyaya yeniləmək tövsiyə olunur.
FAQ2
What type of attack can be carried out using the CVE-2026-13065 vulnerability?
By exploiting the CVE-2026-13065 vulnerability, an attacker can perform a denial of service (DoS) attack, as it causes the mongod process to crash.
What measure should be taken to fix the CVE-2026-13065 vulnerability?
To fix the CVE-2026-13065 vulnerability, it is recommended to upgrade MongoDB to the latest stable version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.