MongoDB Compass may accept and use insufficiently validated input from an untrusted external source. This may cause unintended application behavior, including data disclosure and enabling attackers to impersonate users. This issue affects MongoDB Compass versions 1.35.0 to 1.42.0.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-31960 | MongoDB Compass may accept and use insufficiently validated input from an untrusted external source. This may cause unintended application behavior, including data disclosure and enabling attackers to impersonate users. This issue affects MongoDB Compass versions 1.35.0 to 1.42.0. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://jira.mongodb.org/browse/COMPASS-7260 |
|
History
Thu, 06 Feb 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:mongodb:compass:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: mongodb
Published:
Updated: 2024-08-07T15:29:49.075Z
Reserved: 2024-04-05T12:44:52.126Z
Link: CVE-2024-3371
Updated: 2024-08-01T20:12:06.560Z
Status : Analyzed
Published: 2024-04-24T17:15:47.230
Modified: 2025-02-06T17:58:01.577
Link: CVE-2024-3371
No data.
OpenCVE Enrichment
No data.
EUVD