© 2025-2026 PySpect
First version without a known vulnerability: 4.18.2
PyMongo: PYTHON-5996 Heap out-of-bounds write via signed size overflow in BSON document encoding
Fixed in: 4.18.2
PyMongo: PYTHON-5986 Host injection in PyMongo connection string parsing via percent-encoded delimiters
Fixed in: 4.18.2
PyMongo: PYTHON-5990 Forced Unix domain socket connection via a .sock KMS endpoint in client-side field level encryption
Fixed in: 4.18.2
pymongo: PYTHON-5994 Use exact match for file ID in GridFS delete methods
Fixed in: 4.18.1
PyMongo Out-of-bounds Read in the bson module
Fixed in: 4.6.3
Use of NullPointerException Catch to Detect NULL Pointer Dereference in Pymongo
Fixed in: 2.5.2, a060c15ef87e0f0e72974c7c0e57fe811bbd06a2