CVE-2026-82064
Dashboard / Vulnerabilities / CVE-2026-82064
Summary: Unauthenticated Denial of Service in MongoDB Server via Assertion Failure in Read Concern Processing on Replica Set Members
Details: A security issue in MongoDB Server allows an unauthenticated network user to cause a denial of service on a specific type of replica set member. The server contains an assertion in its read concern processing logic that can be reached without authentication, and the assertion's assumptions about internal state do not hold for all member configurations, causing the server process to terminate.
References: https://jira.mongodb.org/browse/SERVER-130759, https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/82xxx/CVE-2026-82064.json, https://nvd.nist.gov/vuln/detail/CVE-2026-82064
Affected packages
Package
Name:
Purl:
Affected ranges
Type: GIT
Events:
