Surrealdb

Surrealdb

57 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.27%
  • Veröffentlicht 29.09.2026 20:01:06
  • Zuletzt bearbeitet 02.10.2026 13:17:31

SurrealDB before 3.3.0 contains an authorization bypass in HTTP session construction where check_auth() verifies credentials against Surreal-Auth-NS and Surreal-Auth-DB headers but constructs sessions using Surreal-NS and Surreal-DB headers without v...

  • EPSS 0.27%
  • Veröffentlicht 20.07.2026 12:19:46
  • Zuletzt bearbeitet 22.07.2026 19:40:00

SurrealDB before 2.5.0 and before 3.0.0-beta.3 contains a confused deputy privilege escalation vulnerability. Unprivileged users (e.g., those with the database editor role) can create or modify fields containing futures, functions, or closures. Becau...

  • EPSS 0.25%
  • Veröffentlicht 20.07.2026 12:19:46
  • Zuletzt bearbeitet 22.07.2026 19:41:01

SurrealDB before v2.6.1 (and before v3.0.0-beta.3) contains a denial of service vulnerability in its embedded JavaScript scripting engine, which is enabled via the --allow-scripting capability (disabled by default). Any user able to execute arbitrary...

  • EPSS 0.16%
  • Veröffentlicht 20.07.2026 12:19:46
  • Zuletzt bearbeitet 08.10.2026 16:17:28

SurrealDB before 3.1.0 silently substitutes the ES384 algorithm when a JWT access method is configured with ALGORITHM ES512 (DEFINE ACCESS ... TYPE JWT ALGORITHM ES512), because the underlying jsonwebtoken crate (v10.x) has no ES512 variant and the m...

  • EPSS 0.36%
  • Veröffentlicht 20.07.2026 12:19:46
  • Zuletzt bearbeitet 22.07.2026 15:08:06

SurrealDB before 3.1.0 fails to enforce the configured recursion depth limit in the value and JSON parser when processing nested braces, brackets, or parentheses. Unauthenticated attackers can send deeply nested JSON payloads to the WebSocket /rpc en...

  • EPSS 0.25%
  • Veröffentlicht 20.07.2026 12:19:46
  • Zuletzt bearbeitet 23.07.2026 20:17:21

SurrealDB before 3.1.0 fails to enforce recursion depth limits in the type/kind parser when processing nested type annotations. Authenticated attackers can send queries with deeply nested type annotations to exhaust server memory and crash the proces...

  • EPSS 0.35%
  • Veröffentlicht 20.07.2026 12:19:45
  • Zuletzt bearbeitet 22.07.2026 15:17:47

SurrealDB versions before 3.1.0 contain a session hijacking vulnerability where the HTTP /rpc sessions method returns attached session UUIDs without authentication and accepts arbitrary session fields with no ownership verification. Unauthenticated a...

  • EPSS 0.17%
  • Veröffentlicht 20.07.2026 12:19:45
  • Zuletzt bearbeitet 22.07.2026 15:39:07

SurrealDB before 3.1.0 contains an authorization bypass vulnerability in the RELATE statement that allows authenticated users with CREATE permission to overwrite existing edge records without UPDATE permission. Attackers can issue a RELATE statement ...

  • EPSS 0.2%
  • Veröffentlicht 20.07.2026 12:19:45
  • Zuletzt bearbeitet 23.07.2026 20:17:20

SurrealDB before 3.1.0 fails to refresh authentication state in LIVE SELECT subscriptions when session state changes. Attackers can continue receiving real-time notifications under revoked or expired session credentials until the connection closes.

  • EPSS 0.25%
  • Veröffentlicht 20.07.2026 12:19:45
  • Zuletzt bearbeitet 22.07.2026 15:20:06

SurrealDB versions before 3.1.0 contain a denial of service vulnerability where malicious LIVE queries with WHERE clauses that evaluate to errors cause all CREATE, UPDATE, and DELETE operations on the watched table to fail. An authenticated user with...