CVE-2020-7929 PUBLISHED

A user authorized to perform database queries may trigger denial of service by issuing specially crafted query contain a type of regex. This issue affects MongoDB Server v3.6 versions prior to 3.6.21 and MongoDB Server v4.0 versions prior to 4.0.20.

EPSS 0.44% · 63.0th percentile

Risk Scores

EPSS Score
0.44%
63.0th percentile

Affected Products

VendorProductVersions
Bitnamimongodb3.6.0, 4.0.0
Bitnamimongodb3.6.0, 4.0.0

Timeline

References

Open in Interactive Console →