Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-13075

An authenticated user can cause the mongod process to be terminated by the operating system under memory pressure via the $rankFusion and $scoreFusion aggregation stages. The issue originates in the server's error-handling path and requires the ability to run aggregation queries.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 14.7%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2026-13075


Contact Us

Shodan ® - All rights reserved