Description
A user authorized to perform database queries may trigger denial of service by issuing specially crafted query contain a type of regex. This issue affects MongoDB Server v3.6 versions prior to 3.6.21 and MongoDB Server v4.0 versions prior to 4.0.20.
Remediation
References
Related Vulnerabilities
PHP Other Vulnerability (CVE-2007-0909)
Apache HTTP Server Other Vulnerability (CVE-1999-0071)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-7833)
Oracle Database Server Other Vulnerability (CVE-2007-2130)
WordPress Plugin Custom Text Selection Colors Cross-Site Scripting (1.0)