High severity8.1NVD Advisory· Published Jul 22, 2026· Updated Aug 18, 2026
CVE-2026-13072
CVE-2026-13072
Description
When compute mode is enabled on a standalone mongod instance, insufficient validation of externally sourced BSON data during aggregation pipeline processing can result in memory corruption, potentially leading to process termination or other unintended behavior. This configuration is non-default and requires explicit enablement at startup.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- jira.mongodb.org/browse/SERVER-128494nvdVendor AdvisoryPatch
News mentions
0No linked articles in our index yet.