MongoDB Server Log Redaction Vulnerability

Vulnerability

A vulnerability exists in MongoDB Server that can lead to unredacted queries being logged under certain error conditions. This issue is present in MongoDB Server versions 8.0 prior to 8.0.5, 7.0 prior to 7.0.18, and 6.0 prior to 6.0.21.

Impact

The vulnerability allows for the insertion of sensitive information into log files, which could be accessed by unauthorized users or processes.

Added: Jul 7, 2025, 5:04 PM
Updated: Jul 7, 2025, 5:04 PM

Vulnerability Rating

Custom Algorithm
spread
6.8
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.