Denial of Service Vulnerability in MongoDB Server Affecting Time-Series Collections
CVE-2026-18695
7.1HIGH
What is CVE-2026-18695?
A flaw in MongoDB Server affects the processing of specific query predicates on time-series collections that contain a metaField. An authenticated user with write permissions could exploit this issue, leading to an unexpected termination of the server process. This situation results in a denial of service, potentially impacting the availability and performance of the affected MongoDB instance.
Affected Version(s)
MongoDB Server 8.3.0 < 8.3.8
MongoDB Server 8.0 < 8.0.29
MongoDB Server 7.0 < 7.0.40