CVE-2023-0437: MongoDB C Driver
High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.
When calling bson_utf8_validate on some inputs a loop with an exit condition that cannot be reached may occur, i.e. an infinite loop. This issue affects All MongoDB C Driver versions prior to versions 1.25.0.
Affected products
- MongoDB C Driver: before 1.25.0 (fixed in 1.25.0)
Published 2024-01-12. Last modified 2026-06-17.