Description

When tlsInsecure=False appears in a connection string, certificate validation is disabled. This vulnerability affects MongoDB Rust Driver versions prior to v3.2.5

INFO

Published Date :

2025-10-13T16:22:57.417Z

Last Modified :

2026-02-26T17:47:45.550Z

Source :

mongodb
AFFECTED PRODUCTS

The following products are affected by CVE-2025-11695 vulnerability.

Vendors Products
Mongodb
  • Rust-driver
  • Rust Driver

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact