← Vulnerability feed

Vulnerability record · CVE-2025-1756 · published 27 February 2025

CVE-2025-1756: Mongodb mongosh untrusted search path vulnerability

Mongodb · Mongosh

mongosh may be susceptible to local privilege escalation under certain conditions potentially enabling unauthorized actions on a user's system with elevated privilege, when a crafted file is stored in C:\node_modules\. This issue affects mongosh prior to 2.3.0

7.8 CVSS 3.1 High EPSS 0.16% · top 95.4% CWE-426 · Untrusted search path
7.8CVSS 3.1 base score
0.16%EPSS exploitation probability, 30 days
NoNot in CISA KEV
13Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

mongosh may be susceptible to local privilege escalation under certain conditions potentially enabling unauthorized actions on a user's system with elevated privilege, when a crafted file is stored in C:\node_modules\. This issue affects mongosh prior to 2.3.0

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

13 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://jira.mongodb.org/browse/MONGOSH-2028 Issue TrackingVendor Advisory
https://access.redhat.com/errata/RHSA-2025:1756 Third Party Advisory

Track CVE-2025-1756 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2019-8720WebKit memory corruption allows code execution via crafted web contentWebKit contains multiple memory corruption issues in memory handling that are triggered when processing maliciously crafted web content. Successful e…KEVEPSS 1.6%analysed7.8CVE-2023-4911GNU C Library ld.so GLIBC_TUNABLES heap buffer overflowThe GNU C Library dynamic loader ld.so mishandles the GLIBC_TUNABLES environment variable, causing a heap-based buffer overflow and out-of-bounds wri…KEVEPSS 81%analysed8.8CVE-2025-1692Mongodb mongosh vulnerabilityThe MongoDB Shell may be susceptible to control character injection where an attacker with control of the user’s clipboard could manipulate them to p…EPSS 0.28%8.8CVE-2023-5869Postgresql integer overflow vulnerabilityA flaw was found in PostgreSQL that allows authenticated database users to execute arbitrary code through missing overflow checks during SQL array va…EPSS 4.3%8.8CVE-2022-0435Linux kernel TIPC stack overflow via oversized domain member node countA stack overflow exists in the Linux kernel TIPC protocol handling when a packet declares more than the 64 allowed domain member nodes. The out-of-bo…EPSS 68%analysed7.8CVE-2023-5633Linux kernel use after free vulnerabilityThe reference count changes made as part of the CVE-2023-33951 and CVE-2023-33952 fixes exposed a use-after-free flaw in the way memory objects were …EPSS 0.28%7.8CVE-2022-0330Linux kernel vulnerabilityA random memory access flaw was found in the Linux kernel's GPU i915 kernel driver functionality in the way a user may run malicious code on the GPU.…EPSS 0.38%7.8CVE-2019-14815Linux kernel heap-based buffer overflow vulnerabilityA vulnerability was found in Linux Kernel, where a Heap Overflow was found in mwifiex_set_wmm_params() function of Marvell Wifi Driver.EPSS 0.49%

Source: NIST National Vulnerability Database (record CVE-2025-1756), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.