📦 Mongosh

by Mongodb

🔍 What is Mongosh?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-1756

HIGH CVSS 7.5 Feb 27, 2025

MongoDB Shell (mongosh) versions before 2.3.0 are vulnerable to local privilege escalation when a malicious file is placed in C:\node_modules\. This allows attackers with local access to execute arbit...

CVE-2025-1691

HIGH CVSS 7.6 Feb 27, 2025

This CVE describes a control character injection vulnerability in MongoDB Shell (mongosh) where an attacker controlling a MongoDB cluster can craft malicious autocomplete suggestions. When users press...

CVE-2025-1692

MEDIUM CVSS 6.3 Feb 27, 2025

This vulnerability allows attackers to inject malicious code into MongoDB Shell (mongosh) through clipboard manipulation. An attacker controlling the user's clipboard can paste obfuscated code contain...