MongoDB Compass may accept and use insufficiently validated input from an untrusted external source. This may cause unintended application behavior, including data disclosure and enabling attackers to impersonate users. This issue affects MongoDB Compass versions 1.35.0 to 1.42.0.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://jira.mongodb.org/browse/COMPASS-7260 |
|
History
Thu, 06 Feb 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:mongodb:compass:*:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: mongodb
Published: 2024-04-24T16:32:07.178Z
Updated: 2024-08-07T15:29:49.075Z
Reserved: 2024-04-05T12:44:52.126Z
Link: CVE-2024-3371
Updated: 2024-08-01T20:12:06.560Z
Status : Analyzed
Published: 2024-04-24T17:15:47.230
Modified: 2025-02-06T17:58:01.577
Link: CVE-2024-3371
No data.