With over 80,000 potentially susceptible servers accessible on the public internet, a serious vulnerability known as MongoBleed (CVE-2025-14847) that affects several MongoDB versions is being actively exploited in the wild.
Attackers can remotely retrieve secrets, credentials, and other sensitive data from an unprotected MongoDB server by using a publicly known exploit and the technical details that go along with it.
With a severity level of 8.7, the vulnerability has been addressed as a “critical fix,” and a patch for self-hosting instances has been accessible since December 19.
The MongoDB Server’s handling of network packets processed by the zlib library for lossless data compression is the source of the MongoBleed vulnerability. The problem, according to Ox Security researchers, stems from MongoDB returning the amount of memory allotted during network message processing read more about Exploited MongoBleed flaw leaks MongoDB secrets 87K servers exposed.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
