Evidence-linked product lifecycle intelligenceSUPPORT · SECURITY · RETIREMENT
← Search results
AUTOMATICALLY VERIFIEDOFFICIAL VENDOR SOURCECOLLECTED 30 SEP 2026

MongoDB · AUTOMATIC DISCOVERY

MongoDB 4.4

MongoDB Server is tracked by BlackTree as a database platform or data-management product. Its lifecycle page separates release identity, maintenance and security boundaries using the publisher's registered source.

Evidence status

This record passed BlackTree's automatic primary-source checks with a confidence score of 96. It is returned for operational research without requiring routine manual approval. Confirm edition and deployment applicability before acting.

Product overview

MongoDB Server is tracked by BlackTree as a database platform or data-management product. Its lifecycle page separates release identity, maintenance and security boundaries using the publisher's registered source.

Main capabilities

  • Persistent data storage
  • Application data querying and management
  • Backup, security and operational administration

Typical use

Used as an application data store, analytical platform or managed data service.

Deployment

Operated on servers, virtual machines, containers or a vendor-managed cloud service.

This category-level context is generated from the registered product identity. Confirm exact product capabilities on the publisher's page .

Collected lifecycle data

ProductMongoDB
Release4.4
End of End of Life29 February 2024
Date precisionDay

Known exploited vulnerabilities

Catalogue updated 1 Oct 2026

These are product-family matches in the CISA Known Exploited Vulnerabilities catalogue. Confirm the affected product version in the vendor advisory.

CVE-2025-14847Added 29 Dec 2025

MongoDB and MongoDB Server Improper Handling of Length Parameter Inconsistency Vulnerability

MongoDB Server contains an improper handling of length parameter inconsistency vulnerability in Zlib compressed protocol headers. This vulnerability may allow a read of uninitialized heap memory by an unauthenticated client.

MongoDB · MongoDB and MongoDB ServerRansomware use: Unknown

CISA entry

Package vulnerability advisories

Checked 1 Oct 2026

OSV advisories are matched through the registered package URL. A package-family match does not prove that the installed release is affected. Check the affected and fixed versions before remediation.

Source evidence

PRIMARYReady

MongoDB lifecycle discovery

MongoDB 4.4 | July 2020 | February 29, 2024

Official vendor lifecycle or product-change property. Extracted records require human review.

First collected 25 Aug 2026 · Last collected 30 Sep 2026 · Review state accepted

Open official vendor source