New MongoDB Flaw Lets Unauthenticated Attackers Read Uninitialized Memory
- Posted on December 27, 2025
- By The Hacker News
- 5 Views
New MongoDB Flaw Lets Unauthenticated Attackers Read Uninitialized Memory

High-severity CVE-2025-14847 allows unauthenticated attackers to read uninitialized heap memory in MongoDB due to a zlib compression handling flaw.