MongoDb Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2026-13069)
Description
An authenticated user can cause excessive CPU consumption or out-of-memory conditions on a MongoDB server by sending a crafted Queryable Encryption find payload containing an unvalidated field used to control an internal computation loop. The resulting resource exhaustion degrades availability for other operations.