VYPR
Medium severity4.9NVD Advisory· Published Mar 1, 2021· Updated Jun 17, 2026

CVE-2018-25004

CVE-2018-25004

Description

A user authorized to performing a specific type of query may trigger a denial of service by issuing a generic explain command on a find query. This issue affects MongoDB Server v4.0 versions prior to 4.0.6 and MongoDB Server v3.6 versions prior to 3.6.11.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • MongoDB/Serverllm-fuzzy
    Range: <4.0.6, <3.6.11
  • MongoDB Inc./MongoDB Serverv5
    Range: 3.6

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.