Unique Index Violation in MongoDB Server by MongoDB
CVE-2025-10060
What is CVE-2025-10060?
MongoDB Server is susceptible to a vulnerability that may allow upsert operations, when retried within a transaction, to bypass unique index constraints. This issue can lead to invariant failures, resulting in server crashes during commit due to improper WriteUnitOfWork state management. It affects multiple versions of MongoDB Server, necessitating immediate attention to ensure the integrity and reliability of database operations. Users are advised to review product versions and apply the necessary updates.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
MongoDB Server 6.0 < 6.0.25
MongoDB Server 7.0 < 7.0.22
MongoDB Server 8.0 < 8.0.12
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved