CVE-2026-13065 | MongoDB Server up to 7.0.38/8.0.27/8.2.11/8.3.6 Aggregation validation sortBy input validation

SecurityVulns

A vulnerability, which was classified as critical, has been found in MongoDB Server up to 7.0.38/8.0.27/8.2.11/8.3.6. The impacted element is the function validation of the component Aggregation. This manipulation of the argument sortBy causes improper input validation.

This vulnerability is handled as CVE-2026-13065. The attack can be initiated remotely. There is not any exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More