Certain query operations involving deeply nested $jsonSchema constructs can trigger disproportionate CPU consumption in affected MongoDB deployments, potentially leading to resource exhaustion. The resulting CPU-bound operation cannot be interrupted through standard administrative controls.
References
| Link | Resource |
|---|---|
| https://jira.mongodb.org/browse/SERVER-125872 | Vendor Advisory Issue Tracking |
Configurations
Configuration 1 (hide)
|
History
05 Aug 2026, 14:46
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Mongodb mongodb
Mongodb |
|
| CPE | cpe:2.3:a:mongodb:mongodb:*:*:*:*:-:*:*:* | |
| References | () https://jira.mongodb.org/browse/SERVER-125872 - Vendor Advisory, Issue Tracking |
22 Jul 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-22 20:16
Updated : 2026-08-05 14:46
NVD link : CVE-2026-13064
Mitre link : CVE-2026-13064
CVE.ORG link : CVE-2026-13064
JSON object : View
Products Affected
mongodb
- mongodb
CWE
CWE-407
Inefficient Algorithmic Complexity
