CNNVD-202510-1665 Information

CNNVD ID

CNNVD-202510-1665

CVE-2025-11695

  • CNNVD Published: 2025-10-13

Description (Chinese)

MongoDB Rust Driver是MongoDB开源的一个让Rust程序连接MongoDB数据库的客户端库。 MongoDB Rust Driver v3.2.5之前版本存在安全漏洞,该漏洞源于禁用证书验证,可能导致中间人攻击。

Description (English)

MongoDB Rust Driver is a client library for MongoDB open source that connects Rust to the MongoDB database. The previous version of MongoDB Rust Driver v. 3.2.5 had a security loophole, which originated from a ban on certification and could lead to an attack by an intermediary.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

MongoDB

Published

2025-10-13

Last Modified

2026-02-24

References

https://jira.mongodb.org/browse/RUST-2264

Patch

https://www.mongodb.com/zh-cn/docs/drivers/rust/current/

Share on: