SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-13058

MEDIUM · CVSS 6.5 EPSS 0.23%

Source: NVD + CISA KEV + EPSS · Published 2026-07-22 · Last synced 2026-08-21

CyberRota Analysis

AI-Generated

Authenticated users with basic write privileges can exploit a flaw in the transaction command processing of the affected product, leading to abnormal termination of the mongod process. This vulnerability results from inadequate validation of transaction command parameters, causing a denial of service. Organizations using this product should prioritize addressing this issue to prevent potential disruptions in service.

CVE
CVE-2026-13058
Severity
MEDIUM
CVSS
6.5
EPSS
0.23%

Original NVD Description

An authenticated user with basic write privileges can cause the mongod process to terminate abnormally by sending a crafted transaction command with an incomplete set of required fields. The issue stems from inconsistent validation across related transaction command parameters, resulting in a fatal internal invariant failure and denial of service.

Related CVEs

Other vulnerabilities affecting the same vendor(s)