CyberRota Analysis
AI-GeneratedSurrealDB versions prior to 1.1.1 are vulnerable to improper validation of custom parameters and functions, allowing authorized clients to invoke these entities at unauthorized levels. This can lead to a server panic and result in a denial of service. Organizations using affected versions should prioritize updating to mitigate potential disruptions in service.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
SurrealDB versions before 1.1.1 fail to properly validate invocation of custom parameters and functions at root or namespace levels, causing server panic. Authorized clients can invoke these entities at unsupported levels to crash the SurrealDB server, resulting in denial of service.
Related CVEs
Other vulnerabilities affecting the same vendor(s)