Search CVE reports


Toggle filters

1 – 4 of 4 results


CVE-2026-88029

Medium priority
Needs evaluation

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB Python Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a...

1 affected package

pymongo

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pymongo Needs evaluation Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2024-5629

Medium priority

Some fixes available 5 of 7

An out-of-bounds read in the 'bson' module of PyMongo 4.6.2 or earlier allows deserialization of malformed BSON provided by a Server to raise an exception which may contain arbitrary application memory.

1 affected package

pymongo

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pymongo Not affected Fixed Fixed Fixed Fixed
Show less packages

CVE-2024-21506

Medium priority
Ignored

Rejected reason: Duplicate of CVE-2024-5629.

1 affected package

pymongo

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pymongo Not affected Not affected Not affected Not affected
Show less packages

CVE-2013-2132

Medium priority
Fixed

bson/_cbsonmodule.c in the mongo-python-driver (aka. pymongo) before 2.5.2, as used in MongoDB, allows context-dependent attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to decoding...

1 affected package

pymongo

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pymongo
Show less packages