CVE-2026-4358 - Memory safety issues in slot-based execution hash table spill
CVE ID :CVE-2026-4358
Published : March 17, 2026, 8:16 p.m. | 14 minutes ago
Description :A specially crafted aggregation query with $lookup by an authenticated user with write privileges can cause a double-free or use-after-free memory issue in the slot-based execution (SBE) engine when an in-memory hash table is spilled to disk.
Severity: 6.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : March 17, 2026, 8:16 p.m. | 14 minutes ago
Description :A specially crafted aggregation query with $lookup by an authenticated user with write privileges can cause a double-free or use-after-free memory issue in the slot-based execution (SBE) engine when an in-memory hash table is spilled to disk.
Severity: 6.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...