CVE Explorer
CVE-2025-6712
MongoDB Server may be susceptible to disruption caused by high memory usage, potentially leading to server crash. This condition is linked to inefficiencies in memory management related to internal operations. In scenarios where certain internal processes persist longer than anticipated, memory consumption can increase, potentially impacting server stability and availability. This issue affects MongoDB Server v8.0 versions prior to 8.0.10
Known exploited
Not asserted
Disputed
No
Stale source
No
Conflicts
0
Affected products and versions
1 source assertion{"cpes":["cpe:2.3:a:mongodb:mongodb:8.0.0:*:*:*:*:*:*:*","cpe:2.3:a:mongodb:mongodb:8.0.1:*:*:*:*:*:*:*","cpe:2.3:a:mongodb:mongodb:8.0.2:*:*:*:*:*:*:*","cpe:2.3:a:mongodb:mongodb:8.0.3:*:*:*:*:*:*:*","cpe:2.3:a:mongodb:mongodb:8.0.4:*:*:*:*:*:*:*","cpe:2.3:a:mongodb:mongodb:8.0.5:*:*:*:*:*:*:*","cpe:2.3:a:mongodb:mongodb:8.0.6:*:*:*:*:*:*:*","cpe:2.3:a:mongodb:mongodb:8.0.7:*:*:*:*:*:*:*","cpe:2.3:a:mongodb:mongodb:8.0.8:*:*:*:*:*:*:*","cpe:2.3:a:mongodb:mongodb:8.0.9:*:*:*:*:*:*:*"],"defaultStatus":"unaffected","product":"MongoDB Server","vendor":"MongoDB Inc","versions":[{"lessThan":"8.0.10…
- cve_program_cvelist_v5affectedurn:baitaphish:normalized-source-record:v2:37c9966f2332b6a951ce77ae3e0e0bd2b37b36b701b6651ab7ba3fa9ced5c857 · sha256:72b8cf246f648517… · /containers/cna/affected/0
Provider-owned CVSS observations
1 source assertion{"metric":{"attackComplexity":"LOW","attackVector":"NETWORK","availabilityImpact":"HIGH","baseScore":6.5,"baseSeverity":"MEDIUM","confidentialityImpact":"NONE","integrityImpact":"NONE","privilegesRequired":"LOW","scope":"UNCHANGED","userInteraction":"NONE","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","version":"3.1"},"metric_type":"cvssV3_1"}
- cve_program_cvelist_v5cvssurn:baitaphish:normalized-source-record:v2:37c9966f2332b6a951ce77ae3e0e0bd2b37b36b701b6651ab7ba3fa9ced5c857 · sha256:72b8cf246f648517… · /containers/cna/metrics/0/cvssV3_1
CWE assertions
1 source assertion{"cweId":"CWE-400","description":"CWE-400: Uncontrolled Resource Consumption","lang":"en","type":"CWE"}
- cve_program_cvelist_v5cweurn:baitaphish:normalized-source-record:v2:37c9966f2332b6a951ce77ae3e0e0bd2b37b36b701b6651ab7ba3fa9ced5c857 · sha256:72b8cf246f648517… · /containers/cna/problemTypes/0/descriptions/0
Source references
1 source assertion{"url":"https://jira.mongodb.org/browse/SERVER-106751"}
- cve_program_cvelist_v5referenceurn:baitaphish:normalized-source-record:v2:37c9966f2332b6a951ce77ae3e0e0bd2b37b36b701b6651ab7ba3fa9ced5c857 · sha256:72b8cf246f648517… · /containers/cna/references/0
Attribution and limitations
- CVE Program CVEList V5: Reproduce the MITRE copyright designation and CVE license in copies. Source →
Provider severity values are preserved separately. Baitaphish does not convert them into a risk rating, infer affected products, or treat EPSS as observed exploitation.