CyberRota Analysis
AI-GeneratedSurrealDB versions prior to 3.1.0 are vulnerable to a capability bypass in HTTP redirect handling, enabling authenticated users to bypass port-scoped --deny-net rules. This flaw allows attackers to exploit HTTP redirects from permitted hostnames to restricted host:port combinations, potentially leading to unauthorized access to sensitive resources. Organizations using SurrealDB should prioritize updating to the latest version to mitigate this risk.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
SurrealDB before 3.1.0 contains a capability bypass vulnerability in HTTP redirect handling that allows authenticated users to circumvent port-scoped --deny-net rules. Attackers can chain an HTTP redirect from an allowed hostname to a denied host:port combination, and the redirect is followed because the port information is dropped during redirect policy evaluation.
Related CVEs
Other vulnerabilities affecting the same vendor(s)