MongoDB Server contains an improper handling of length parameter inconsistency vulnerability in Zlib compressed protocol headers. This vulnerability may allow a read of uninitialized heap memory by an unauthenticated client.
// weekly digest
// weekly digest
// weekly digest
2025-12-29 00:00 UTC 2026-01-04 23:59 UTC
// total
0
// critical
0
// high
0
// medium
0
// low
0
// new kev
1
// top critical
No CRITICAL CVEs published this week.
// top high
No HIGH CVEs published this week.
// new kev additions
MongoDB Server contains an improper handling of length parameter inconsistency vulnerability in Zlib compressed protocol headers. This vulnerability may allow a read of uninitialized heap memory by an unauthenticated client.