Known Vulnerabilities for Mongoose by Cesanta
Listed below are 10 of the newest known vulnerabilities associated with "Mongoose" by "Cesanta".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-42334 json | Mongoose is a MongoDB object modeling tool designed to work in an asynchronous environment. Prior to 6.13.9, 7.8.9, 8.22.1, a... | Not Provided | 2026-05-14 | 2026-05-14 |
| CVE-2026-6986 json | A security vulnerability has been detected in Cesanta Mongoose up to 7.20. This issue affects the function mg_aes_gcm_decrypt... | Not Provided | 2026-04-25 | 2026-04-27 |
| CVE-2026-6985 json | A weakness has been identified in Cesanta Mongoose up to 7.20. This vulnerability affects the function handle_opt of the file... | Not Provided | 2026-04-25 | 2026-04-27 |
| CVE-2026-5246 json | A vulnerability was determined in Cesanta Mongoose up to 7.20. Affected is the function mg_tls_verify_cert_signature of the f... | Not Provided | 2026-04-02 | 2026-04-02 |
| CVE-2026-5245 json | A vulnerability was found in Cesanta Mongoose up to 7.20. This impacts the function handle_mdns_record of the file mongoose.c... | Not Provided | 2026-04-02 | 2026-04-02 |
| CVE-2026-5244 json | A vulnerability has been found in Cesanta Mongoose up to 7.20. This affects the function mg_tls_recv_cert of the file mongoos... | Not Provided | 2026-04-02 | 2026-04-02 |
| CVE-2026-2968 json | Not Provided | 2026-02-23 | 2026-04-29 | |
| CVE-2026-2967 json | Not Provided | 2026-02-23 | 2026-04-29 | |
| CVE-2026-2966 json | Not Provided | 2026-02-23 | 2026-04-29 | |
| CVE-2023-34188 json | The HTTP server in Mongoose before 7.10 accepts requests containing negative Content-Length headers. By sending a single atta... | 7.5 - HIGH | 2023-06-23 | 2023-09-06 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Cesanta | Mongoose | 7.1 | |||
| Application | Cesanta | Mongoose | 7.0 | |||
| Application | Cesanta | Mongoose | 6.9 | |||
| Application | Cesanta | Mongoose | 6.8 | |||
| Application | Cesanta | Mongoose | 6.7 | |||
| Application | Cesanta | Mongoose | 6.6 | |||
| Application | Cesanta | Mongoose | 6.5 | |||
| Application | Cesanta | Mongoose | 6.4 | |||
| Application | Cesanta | Mongoose | 6.3 | |||
| Application | Cesanta | Mongoose | 6.2 | |||
| Application | Cesanta | Mongoose | 6.18 | |||
| Application | Cesanta | Mongoose | 6.17 | |||
| Application | Cesanta | Mongoose | 6.16 | |||
| Application | Cesanta | Mongoose | 6.15 | |||
| Application | Cesanta | Mongoose | 6.14 | |||
| Application | Cesanta | Mongoose | 6.13 | |||
| Application | Cesanta | Mongoose | 6.12 | |||
| Application | Cesanta | Mongoose | 6.11 | |||
| Application | Cesanta | Mongoose | 6.10 | |||
| Application | Cesanta | Mongoose | 6.1 |