CVE-2025-3082

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Apr 1, 2025
CWE ID 862

Summary

CVE-2025-3082 is a vulnerability affecting multiple versions of MongoDB Server. Users with access to view data may manipulate collation settings, enabling them to access unintended data. Affected versions include MongoDB Server 5.0 prior to 5.0.31, 6.0 prior to 6.0.20, 7.0 prior to 7.0.14, and 7.3 versions before 7.3.4. Successful exploitation of this vulnerability could lead to unauthorized data access, potentially posing a significant security risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share