Intel

AIKIDO-2026-506971

pymongo is vulnerable to Integer Overflow

Integer OverflowCVE-2026-96749 Published Yesterday

75

High Risk

This Affects:

PYTHONpymongo
1.10.1 - 4.18.1
Fixed in 4.18.2
Are you affected? Scan for Free

TL;DR

PyMongo's bundled native BSON encoder computes buffer growth size in a signed 32-bit int and uses an overflow check with undefined behavior in C. Encoding a single document built from a very large amount of caller supplied data can overflow that signed arithmetic, so the encoder writes outside the allocated buffer, causing a heap out-of-bounds write in the application's process. An unprivileged party who can place a very large value into data that an application encodes can trigger this, depending on how the native extension was built. The fix computes the size in a wider type and rejects negative or over-limit sizes before the buffer grows.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range and the bundled C extension is built and used for BSON encoding.

Background info

pymongo is vulnerable to Integer Overflow in versions 1.10.1 - 4.18.1.

How to fix this

Upgrade the pymongo library to the patch version.

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform