CVE-2026-13075: $rankFusion and $scoreFusion Unbounded Memory Allocation During Error Suggestion Generation
An authenticated user can cause the mongod process to be terminated by the operating system under memory pressure via the $rankFusion and $scoreFusion aggregation stages. The issue originates in the server's error-handling path and requires the ability to run aggregation queries.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-13075?
CVE-2026-13075 has a severity rating of medium with a score of 6.5.
How do I fix CVE-2026-13075?
To mitigate CVE-2026-13075, update to the latest version of MongoDB that addresses this vulnerability.
What causes CVE-2026-13075?
CVE-2026-13075 is caused by unbounded memory allocation during error suggestion generation in the MongoDB aggregation stages.
Can an unauthenticated user exploit CVE-2026-13075?
No, only authenticated users with the ability to run aggregation queries can exploit CVE-2026-13075.
What are the potential impacts of exploiting CVE-2026-13075?
Exploiting CVE-2026-13075 may cause the mongod process to be terminated under memory pressure.