Description
Sending specially crafted commands to a MongoDB Server may result in artificial log entries being generated or for log entries to be split. This issue affects MongoDB Server v3.6 versions prior to 3.6.20; MongoDB Server v4.0 versions prior to 4.0.21 and MongoDB Server v4.2 versions prior to 4.2.10.
Remediation
References
Related Vulnerabilities
MongoDb Excessive Iteration Vulnerability (CVE-2018-20805)
WordPress 5.0.x PHP Object Injection (5.0 - 5.0.12)
WordPress Plugin Category Grid View Gallery Cross-Site Scripting (2.3.3)
WordPress Plugin Another WordPress Classifieds Multiple Vulnerabilities (2.2.1)
WordPress Plugin Zingiri Web Shop 'uploadfilexd.php' Arbitrary File Upload (2.4.3)