MongoDB Compass may accept and use insufficiently validated input from an untrusted external source. This may cause unintended application behavior, including data disclosure and enabling attackers to impersonate users. This issue affects MongoDB Compass versions 1.35.0 to 1.42.0.
History

Thu, 06 Feb 2025 18:15:00 +0000

Type Values Removed Values Added
Weaknesses NVD-CWE-Other
CPEs cpe:2.3:a:mongodb:compass:*:*:*:*:*:*:*:*

cve-icon MITRE

Status: PUBLISHED

Assigner: mongodb

Published:

Updated: 2024-08-07T15:29:49.075Z

Reserved: 2024-04-05T12:44:52.126Z

Link: CVE-2024-3371

cve-icon Vulnrichment

Updated: 2024-08-01T20:12:06.560Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-24T17:15:47.230

Modified: 2025-02-06T17:58:01.577

Link: CVE-2024-3371

cve-icon Redhat

No data.