Looking for the vulnerability index of Invicti's legacy products?
MongoDb Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2026-13069) - Vulnerability Database

MongoDb Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2026-13069)

Description

An authenticated user can cause excessive CPU consumption or out-of-memory conditions on a MongoDB server by sending a crafted Queryable Encryption find payload containing an unvalidated field used to control an internal computation loop. The resulting resource exhaustion degrades availability for other operations.

References