Loading HuntDB...

GHSA-8v6g-rf54-42cg

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Specially crafted API calls may allow an authenticated user who holds Organization Owner privilege to obtain an API key with Global Role privilege. This issue affects MongoDB Ops Manager v4.2 versions 4.2.0-4.2.17, v4.3 versions 4.3.0-4.3.9 and v4.4 versions 4.4.0-4.4.2.

Related CVEs

Key Information

GHSA ID
GHSA-8v6g-rf54-42cg
Published
May 24, 2022 5:34 PM
Last Modified
January 23, 2024 6:31 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 12, 2025 6:34 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.