Active Exploitation of Critical MongoDB Vulnerability CVE-2025-14847

1 min read
Source: The Hacker News
Active Exploitation of Critical MongoDB Vulnerability CVE-2025-14847
Photo: The Hacker News
TL;DR

A critical vulnerability in MongoDB, CVE-2025-14847, allows unauthenticated attackers to remotely leak sensitive data by exploiting a flaw in zlib compression, with over 87,000 instances potentially affected worldwide. Users are advised to update their MongoDB versions and implement mitigations such as disabling zlib compression and restricting server exposure.

Share this article

Want the full story? Read the original reporting

Read on The Hacker News