CVE-2026-8053Disclosure(mongodb / mongodb)

LOWCVSS 8.7 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch mongodb mongodb systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

An issue in MongoDB Server's time-series collection implementation allows an authenticated user with database write privileges to trigger an out-of-bounds memory write in the mongod process. The issue results from an inconsistency in the internal field-name-to-index mapping within the time-series bucket catalog. Under certain conditions this can result in arbitrary code execution. This issue impacts MongoDB Server v5.0 versions prior to 5.0.33, v6.0 versions prior to 6.0.28, v7.0 versions prior to 7.0.34, v8.0 versions prior to 8.0.23, v8.2 versions prior to 8.2.9 and v8.3 versions prior to 8.3.2.

2.3/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • mongodb

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 15 mentions across 8 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 9 signals
  • Technical details provided in 12 signals
  • Disclosure: 7 classified signals
  • General: 1 classified signal
  • Peaked 6d ago at 7 mentions (2026-05-14); latest day: 1
  • 15 total mentions across 8 days

Affected systems

Vendors
Products
mongodb

Deep dive

Activity timeline15 mentions / 8d
02457Mentions · 2026-05-13: 1Mentions · 2026-05-14: 7Mentions · 2026-05-15: 1Mentions · 2026-05-18: 1Mentions · 2026-05-20: 1Mentions · 2026-05-31: 2Mentions · 2026-06-20: 1Mentions · 2026-07-01: 1PoC Mentioned / Linked · 2026-05-15: 1Patch / Workaround · 2026-05-13: 1Patch / Workaround · 2026-05-14: 4Patch / Workaround · 2026-05-20: 1Patch / Workaround · 2026-05-31: 1Patch / Workaround · 2026-06-20: 1Patch / Workaround · 2026-07-01: 1Technical Details · 2026-05-13: 1Technical Details · 2026-05-14: 5Technical Details · 2026-05-15: 1Technical Details · 2026-05-18: 1Technical Details · 2026-05-20: 1Technical Details · 2026-05-31: 1Technical Details · 2026-06-20: 1Technical Details · 2026-07-01: 105-1305-1405-1505-1805-2005-3106-2007-01
Signal classification3 categories
Disclosure
746.7%
Patch
746.7%
General
16.7%
Referenced assets7 URLs
Classification over time
DateTotalLabels
2026-05-131
Disclosure1
2026-05-147
Disclosure4Patch3
2026-05-151
Disclosure1
2026-05-181
Disclosure1
2026-05-201
Patch1
2026-05-312
General1Patch1
2026-06-201
Patch1
2026-07-011
Patch1
Full discourse15 posts
  • Gray Hats@the_yellow_fall
    Patch

    Urgent: A memory corruption flaw in MongoDB time-series collections (CVE-2026-8053) enables server takeover. Patch to versions 8.3.2, 8.0.23, or 7.0.34 now. #MongoDB #CVE #CyberSecurity #DatabaseSecurity #InfoSec #PatchNow #DataProtection #TechNews https://securityonline.info/mongodb-time-series-vulnerability-cve-2026-8053-patch-alert/ https://t.co/jkOegzWKhO

    Post summary

    The post alerts on MongoDB CVE‑2026‑8053, a memory corruption flaw that allows server takeover, and provides patch versions and advisory links.

    1902481.8K
    12.5K followersView on X
  • kokumօtօ@__kokumoto
    Patch

    MongoDBに深刻な脆弱性。CVE-2026-8053は時系列コレクション実装における境界外書き込み。一定の条件下では任意コード実行が成立。修正済み。 https://securityonline.info/mongodb-time-series-vulnerability-cve-2026-8053-patch-alert/

    Post summary

    The post announces a serious out-of-bounds write vulnerability in MongoDB’s time-series collections (CVE-2026-8053) that could lead to arbitrary code execution, notes that it has been patched, and provides a link to the patch alert.

    01021911
    7.5K followersView on X
  • Upwind Security MDR@UpwindMDR
    Disclosure

    🚨 High - MongoDB Time-Series OOB Write → RCE (CVE-2026-8053) An out-of-bounds write in MongoDB's time-series bucket catalog lets an authenticated user with write privileges corrupt memory and achieve arbitrary code execution on the DB server (CVSS 8.7). Especially dangerous in multi-tenant clusters. 👉 Affected: MongoDB Server v5.0 < 5.0.33, v6.0 < 6.0.28, v7.0 < 7.0.34, v8.0 < 8.0.23, v8.2 < 8.2.9, v8.3 < 8.3.2 | Upgrade to the corresponding patched release

    Post summary

    MongoDB time‑series OOB write vulnerability (CVE-2026-8053) allows authenticated users to achieve RCE; affected releases are listed, and a patch upgrade is advised.

    01030135
    255 followersView on X
  • iototsecnews@iototsecnews
    Patch

    MongoDB の脆弱性 CVE-2026-8053 が FIX:セルフホスト環境で RCE の可能性 https://iototsecnews.jp/2026/05/14/critical-mongodb-vulnerability-allow-attackers-to-execute-arbitrary-code/ MongoDB のサーバに見つかった、深刻なリモートコード実行 (RCE) の脆弱性に関する解説です。問題の原因は、サーバ内部での命令処理の不備により、外部からの不正なリクエストをプログラムとして実行してしまう点にあります。この CVE-2026-8053 を悪用する攻撃者は、サーバの完全な制御権を奪取し、大量のデータ窃取やランサムウェア展開などを招く恐れがあります。クラウド版 (Atlas) は対策済みですが、自社運用のサーバは手動での更新が必須です。ご利用のチームは、ご注意ください。 #CVE20268053 #MongoDB #Vulnerability

    Post summary

    CVE‑2026‑8053 is a critical RCE flaw affecting self‑hosted MongoDB servers; Atlas has been patched, while users of their own installations must manually update to mitigate the vulnerability.

    01000159
    489 followersView on X
  • Israel@f1tym1
    Disclosure

    Critical 9.2 CVSS RCE Found in Amazon Redshift JDBC Driver https://ift.tt/9JRPi26 The post Critical 9.2 CVSS RCE Found in Amazon Redshift JDBC Driver appeared first on Daily CyberSecurity. Related posts: Critical MongoDB Flaw CVE-2026-8053 Paves the Way for Server Takeover …

    Post summary

    The post announces a critical RCE in Amazon Redshift JDBC Driver (CVSS 9.2) and references a MongoDB flaw (CVE‑2026‑8053). It includes a link for further details but does not disclose exploitable code or report active attacks.

    0001063
    971 followersView on X
  • Cyber-Blog@cyberbl0g
    Disclosure

    CVE-2026-8053 — vulnerabilidad crítica en MongoDB. Publicada HOY. 🧵 https://t.co/kBWcZuE8sK

    Post summary

    The tweet merely announces that a new critical vulnerability (CVE-2026-8053) in MongoDB has been published today, without providing any supporting details.

    1000065
    731 followersView on X
  • Cyber Edition@CyberEdition
    Disclosure

    🛢️A critical MongoDB flaw (CVE-2026-8053) could let attackers take over database servers through memory corruption in time-series collections. Authenticated users with write access may achieve remote code execution. Patch ASAP. https://thecyberedition.com/mongodb-vulnerability-server-takeover/ #MongoDB #CyberSecurity

    Post summary

    CVE-2026-8053 is a critical MongoDB memory corruption flaw that can lead to remote code execution via authenticated write access, and a patch is urgently needed.

    0001082
    728 followersView on X
  • The NoSQL Nerd@NoSQLNerd
    Patch

    CVE-2026-8053 hits MongoDB time-series collections: memory corruption, CVSS 8.7, basic DB access means server takeover. Patch to 8.3.2, 8.0.23, or 7.0.34 now. https://securityonline.info/mongodb-time-series-vulnerability-cve-2026-8053-patch-alert/

    Post summary

    A memory corruption vulnerability (CVE-2026-8053) affecting MongoDB time-series collections is disclosed with CVSS 8.7 and server takeover potential; patches are available for multiple versions.

    0000054
    16 followersView on X
  • The NoSQL Nerd@NoSQLNerd
    Patch

    MongoDB Server CVE-2026-8053, CVSS 8.7: write-privileged users can RCE mongod via an out-of-bounds write in the time-series bucket catalog. Affects v5.0 to v8.3. https://securityonline.info/mongodb-time-series-vulnerability-cve-2026-8053-patch-alert/

    Post summary

    MongoDB CVE-2026-8053 allows RCE via an out-of-bounds write for write-privileged users; affected MongoDB versions 5.0‑8.3 have a patch available, and the issue has a CVSS score of 8.7.

    0000033
    14 followersView on X
  • The NoSQL Nerd@NoSQLNerd
    Patch

    Running MongoDB time-series collections? CVE-2026-8053 (CVSS 8.7) could let attackers with basic DB access take over your server. Patched in 8.0.12, 7.0.22, and 6.0.23. Check your version now. https://hubs.ly/Q04jpL0b0

    Post summary

    The post alerts users of CVE-2026-8053, a moderate‑to‑high severity flaw in MongoDB time‑series collections that could allow remote server takeover with basic DB access, and lists the patch versions that mitigate the issue.

    0000046
    14 followersView on X
  • IntegSec@integ_sec
    General

    CVE-2026-8053: MongoDB Time-Series Bug - What It Means for Your Business and How to Respond https://hubs.ly/Q04jpL0b0

    Post summary

    Only a title and link are provided, with no substantive details about the vulnerability or its remediation.

    0000046
    32 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-8053 Out-of-Bounds Memory Write in MongoDB Server Time-Series Collections https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-8053

    Post summary

    The text announces a new MongoDB vulnerability (CVE-2026-8053) identified as an out‑of‑bounds memory write affecting time‑series collections.

    0000057
    4.0K followersView on X
  • Proficio@proficioinc
    Disclosure

    Critical MongoDB Vulnerability (CVE-2026-8053) Allow Attackers to Execute Arbitrary Code via @The_Cyber_News #Proficio #ThreatNews #Cybersecurity #MSSP #MDR https://cybersecuritynews.com/mongodb-rce-vulnerability/

    Post summary

    The tweet announces a critical MongoDB RCE vulnerability (CVE‑2026‑8053) and links to an article, but it does not provide a PoC, exploit code, or patch information.

    00000100
    1.0K followersView on X
  • CyDhaal@CyberDhaal
    Disclosure

    Critical flaw in MongoDB Server lets attackers execute arbitrary code and seize full control. CVE-2026-8053 threatens millions of records worldwide. #cybersecurity #CyDhaal #MongoDB #CVE20268053 #RCE #DatabaseSecurity 🔒

    Post summary

    A critical MongoDB Server vulnerability (CVE‑2026‑8053) is reported that enables remote code execution with full system control, but no PoC, exploit, patch, or evidence of active exploitation is provided.

    0000012
    36 followersView on X
  • キタきつね@foxbook
    Patch

    MongoDBの重大な脆弱性CVE-2026-8053がサーバー乗っ取りの道を開く Critical MongoDB Flaw CVE-2026-8053 Paves the Way for Server Takeover #DailyCyberSecurity (May 14) https://securityonline.info/mongodb-time-series-vulnerability-cve-2026-8053-patch-alert/

    Post summary

    The announcement highlights a critical MongoDB vulnerability (CVE-2026-8053) that could lead to server takeover, and it points to a patch alert indicating that a fix is available.

    00000277
    4.8K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmongodbmongodb---

Explore more