Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30983
HistoryJun 16, 2021 - 7:36 p.m.

Improper Input Validation

2021-06-1619:36:23
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.001 Low

EPSS

Percentile

22.9%

github.com/mongodb/mongo-go-driver is vulnerable to improper input validation. A remote attacker could use a Go object with a specifically crafted string, to inject additional fields into marshalled documents due to the insufficient validations in BSON marshalling functions.