CVE-2025-6711 — Log File Information Exposure in INC Mongodb Server
Severity
4.9MEDIUMNVD
CNA4.4
EPSS
0.1%
top 76.53%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 7
Description
An issue has been identified in MongoDB Server where unredacted queries may inadvertently appear in server logs when certain error conditions are encountered. This issue affects MongoDB Server v8.0 versions prior to 8.0.5, MongoDB Server v7.0 versions prior to 7.0.18 and MongoDB Server v6.0 versions prior to 6.0.21.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 1.2 | Impact: 3.6
Affected Packages2 packages
🔴Vulnerability Details
3OSV▶
CVE-2025-6711: An issue has been identified in MongoDB Server where unredacted queries may inadvertently appear in server logs when certain error conditions are enco↗2025-07-07
GHSA▶
GHSA-2844-pfq3-9x4m: An issue has been identified in MongoDB Server where unredacted queries may inadvertently appear in server logs when certain error conditions are enco↗2025-07-07