CVE-2026-1848

Connections received from the proxy port may not count towards total accepted connections, resulting in server crashes if the total number of connections exceeds available resources. This only applies to connections accepted from the proxy port, pending the proxy protocol header.
References
Link Resource
https://jira.mongodb.org/browse/SERVER-114695 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mongodb:mongodb:*:*:*:*:-:*:*:*
cpe:2.3:a:mongodb:mongodb:*:*:*:*:-:*:*:*
cpe:2.3:a:mongodb:mongodb:*:*:*:*:-:*:*:*

History

25 Feb 2026, 17:20

Type Values Removed Values Added
References () https://jira.mongodb.org/browse/SERVER-114695 - () https://jira.mongodb.org/browse/SERVER-114695 - Vendor Advisory
CPE cpe:2.3:a:mongodb:mongodb:*:*:*:*:-:*:*:*
Summary
  • (es) Conexiones recibidas del puerto proxy puede que no cuenten para el total de conexiones aceptadas, lo que resulta en caídas del servidor si el número total de conexiones excede los recursos disponibles. Esto solo se aplica a conexiones aceptadas del puerto proxy, a la espera de la cabecera del protocolo proxy.
First Time Mongodb
Mongodb mongodb

10 Feb 2026, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-10 19:15

Updated : 2026-02-25 17:20


NVD link : CVE-2026-1848

Mitre link : CVE-2026-1848

CVE.ORG link : CVE-2026-1848


JSON object : View

Products Affected

mongodb

  • mongodb
CWE
CWE-770

Allocation of Resources Without Limits or Throttling