What is CVE-2026-18701?
A vulnerability in MongoDB Server's query subsystem could allow an authenticated user to cause an unexpected server process termination by crafting a specific query filter, leading to a Denial of Service. Administrators are advised to apply the security patch provided by MongoDB to mitigate this issue.
Azərbaycanca: MongoDB Server-in sorğu altsistemində autentifikasiya olunmuş istifadəçiyə xüsusi hazırlanmış sorğu filtri ilə server prosesini gözlənilmədən sonlandırmağa imkan verən boşluq aşkarlanıb. Bu, xidmətin dayanmasına (Denial of Service) səbəb ola bilər. Təsirə məruz qalmamaq üçün MongoDB tərəfindən təqdim olunan təhlükəsizlik yeniləməsini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: shared vendor: MongoDB
FAQ2
Does exploiting CVE-2026-18701 require the attacker to be authenticated on MongoDB Server?
Yes, this vulnerability requires an authenticated user to send a specially crafted query filter.
How can you protect against CVE-2026-18701?
It is recommended to apply the security patch provided by MongoDB.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.