Security
Mongobleed PoC Leaks Memory via MongoDB zlib Bug
• Key Takeaways: * A public PoC called “mongobleed” exploits CVE-2025-14847, a memory-leak in MongoDB’s zlib decompression. * Attackers can extract uninitialized server memory without authentication, exposing logs, /proc data, connection UUIDs and client IPs. * Affected branches include MongoDB 5.0–8.2; fixes are available (see versions 5.0.32, 6.