Looking for the vulnerability index of Invicti's legacy products?
MongoDb Use After Free Vulnerability - CVE-2026-11933 - Vulnerability Database

MongoDb Use After Free Vulnerability - CVE-2026-11933

High
Reference: CVE-2026-11933
Title: MongoDb Use After Free Vulnerability
Overview:

A use-after-free vulnerability exists in MongoDB Server39s server-side JavaScript engine when converting BSON documents to JavaScript arrays. An authenticated user with read privileges who is able to run server-side JavaScript (for example via where or function) can cause the server to access memory that has already been freed. This may result in disclosure of information from the mongod process memory or a denial of service through a server crash.