Batched Delete Operations Vulnerability in MongoDB Server from MongoDB
CVE-2025-13644
What is CVE-2025-13644?
A vulnerability exists in MongoDB Server which can lead to an invariant failure during batched delete operations due to incorrect assumptions about document presence based on size exceeding BSONObjMaxSize. This critical flaw can disrupt data handling processes, impacting the integrity of batch operations across various versions of the product. Specific versions affected include MongoDB Server v7.0 prior to 7.0.26, v8.0 prior to 8.0.13, and v8.1 prior to 8.1.2. Users are advised to review their versions and apply necessary updates to mitigate risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
MongoDB Server 8.0 < 8.0.13
MongoDB Server 7.0 < 7.0.26
MongoDB Server 8.1 < 8.1.2
References
CVSS V4
Timeline
Vulnerability published
Vulnerability Reserved