Showing 1 vulnerability on this page for Mongo-c-driver

Signals CISA KEV Ransomware Nuclei
MongoDB vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Integer Overflow in GridFS chunkSize Leading to Heap Allocation Failure

User-controlled chunkSize metadata from MongoDB lacks appropriate validation allowing malformed GridFS metadata to overflow the bounding container.

CWE-120Jan 27, 2026
CVSS7.1v4.0EPSS0.275%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX