CVE-2024-58369
Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
18/07/2026
Last modified:
21/07/2026
Description
SurrealDB versions before 1.1.1 fail to properly validate invocation of custom parameters and functions at root or namespace levels, causing server panic. Authorized clients can invoke these entities at unsupported levels to crash the SurrealDB server, resulting in denial of service.
Impact
Base Score 4.0
7.10
Severity 4.0
HIGH
Base Score 3.x
6.50
Severity 3.x
MEDIUM



