CVE-2025-14847 ‘MongoBleed’ exposes 87,000 MongoDB Worldwide

MongoBleed (CVE-2025-14847): zlib compression flaw lets unauthenticated attackers leak MongoDB server memory — patches released; disable zlib, update versions, and restrict network exposure.

  • CVE-2025-14847 (nicknamed MongoBleed) lets unauthenticated attackers leak memory from MongoDB servers.
  • More than 87,000 potentially vulnerable instances were identified worldwide, many with default zlib compression enabled.
  • MongoDB has released patches and applied fixes to Atlas; administrators should update to the listed versions or disable zlib compression as a temporary measure.
  • Mitigations include restricting network exposure and monitoring logs for abnormal pre-authentication connections.

On Dec 29, 2026, researchers disclosed CVE-2025-14847, a high-severity vulnerability (CVSS 8.7) that lets unauthenticated actors read sensitive data from MongoDB server memory. The flaw, called MongoBleed, affects servers using zlib-based compression and is already being exploited in the wild.

- Advertisement -

A CVE (Common Vulnerabilities and Exposures) is a standardized identifier for a software security flaw. zlib is a widely used data compression library used to compress and decompress network messages.

OX Security reported that the issue stems from zlib message decompression and noted, “A flaw in zlib compression allows attackers to trigger information leakage,” adding that an attacker can extract data by sending malformed packets (see OX Security). Wiz described how malformed compressed network packets can expose uninitialized heap memory prior to authentication (see Wiz).

Researchers Merav Bar and Amitai Cohen explained the root cause: “The affected logic returned the allocated buffer size (output.length()) instead of the actual decompressed data length, allowing undersized or malformed payloads to expose adjacent heap memory,” as stated in the Wiz analysis.

Data from Censys shows more than 87,000 potentially vulnerable instances, concentrated in the U.S., China, Germany, India, and France. MongoDB advised updating to versions 8.2.3, 8.0.17, 7.0.28, 6.0.27, 5.0.32, and 4.4.30, and has applied patches to Atlas (see Patches for MongoDB Atlas).

- Advertisement -

The vulnerability also affects the Ubuntu rsync package, which uses zlib. Temporary mitigations include disabling zlib compression by starting mongod or mongos with networkMessageCompressors or net.compression.compressors options that omit zlib, restricting network exposure, and monitoring MongoDB logs for anomalous pre-authentication connections.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Satoshi-era 909 BTC wallet wakes after 13 years, moves $85M.

A Satoshi‑era wallet transferred its full balance of 909.38 BTC—about $84.6 million—after 13 years...

Cardano Volatility Fuels Comeback Hopes After Hoskinson Buzz

Cardano (ADA) trades at $0.36, up 2% in the last 24 hours, after sharp...

Ethereum Leads Bitcoin Liquidations as Macro Headwinds Bite.

Ethereum led crypto liquidations over the last 24 hours, surpassing Bitcoin.Total crypto liquidations totaled...

Bitcoin Falls Amid US-EU Tariff Fears, Drops Near $92K today

Bitcoin traded near $92,000 on Jan. 19 after a weekend decline tied to concerns...

UK committee: regulators lag as AI reshapes financial sector

The UK’s Treasury Committee warns AI use in finance is outpacing regulatory oversight.Regulators are...
- Advertisement -

Must Read

How To Buy a Handshake Domain: A Step-by-Step Guide

Handshake Domains | Benefits | Drawbacks | How To Buy | Supported BrowsersIn this step-by-step guide, I am going to show you how to...
Bitcoin (BTC) $ 90,992.00 1.89%
Ethereum (ETH) $ 3,117.73 2.62%
XRP (XRP) $ 1.95 0.56%
Bittensor (TAO) $ 242.87 2.13%
Polkadot (DOT) $ 1.99 1.24%
Cardano (ADA) $ 0.365792 0.38%
Chainlink (LINK) $ 12.61 1.25%
Hyperliquid (HYPE) $ 23.05 3.19%
Monero (XMR) $ 580.24 8.67%
Hedera (HBAR) $ 0.108244 1.14%
Toncoin (TON) $ 1.57 2.64%