<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T21:06:49.617303+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-03802</id>
    <title>bdu:2025-03802</title>
    <updated>2026-10-04T21:06:49.623846+00:00</updated>
    <content>bdu:2025-03802</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-03802"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-mongodb-2024-6375</id>
    <title>BIT-mongodb-2024-6375 — Missing authorization check may lead to shard key refinement</title>
    <updated>2026-10-04T21:06:49.623895+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: mongodb</p>
<p>A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-mongodb-2024-6375"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0537</id>
    <title>certfr-2024-avi-0537 — De multiples vulnérabilités ont été découvertes dans MongoDB. Certaines d'entre elles permettent à un attaquant de prov…</title>
    <updated>2026-10-04T21:06:49.623950+00:00</updated>
    <content>certfr-2024-avi-0537</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0537"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-3349</id>
    <title>EUVD-2026-3349</title>
    <updated>2026-10-04T21:06:49.623982+00:00</updated>
    <content>EUVD-2026-3349</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-3349"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-6375</id>
    <title>fkie_cve-2024-6375</title>
    <updated>2026-10-04T21:06:49.624001+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-6375"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-85f9-vc47-9pr8</id>
    <title>GHSA-85f9-vc47-9pr8</title>
    <updated>2026-10-04T21:06:49.624037+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-85f9-vc47-9pr8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-6375</id>
    <title>Withdrawn: UBUNTU-CVE-2024-6375</title>
    <updated>2026-10-04T21:06:49.624063+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Ubuntu:14.04:LTS: mongodb, Ubuntu:16.04:LTS: mongodb, Ubuntu:18.04:LTS: mongodb, Ubuntu:20.04:LTS: mongodb</p>
<p>A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-6375"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1508</id>
    <title>WID-SEC-W-2024-1508 — MongoDB: Mehrere Schwachstellen</title>
    <updated>2026-10-04T21:06:49.624108+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in MongoDB ausnutzen, um Informationen offenzulegen, einen Denial-of-Service-Zustand zu erzeugen und Daten zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1508"/>
  </entry>
</feed>
