CVE-2025-3082
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Apr 1, 2025
CWE ID 862
Summary
CVE-2025-3082 is a vulnerability affecting multiple versions of MongoDB Server. Users with access to view data may manipulate collation settings, enabling them to access unintended data. Affected versions include MongoDB Server 5.0 prior to 5.0.31, 6.0 prior to 6.0.20, 7.0 prior to 7.0.14, and 7.3 versions before 7.3.4. Successful exploitation of this vulnerability could lead to unauthorized data access, potentially posing a significant security risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.