Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Garyhai

#41758of 56,330
6.9Total CVSS
Vulnerabilities · 1
PT-2026-60939
6.9
2024-11-22
Surrealdb · Surrealdb · CVE-2024-58358
**Name of the Vulnerable Software and Affected Versions** SurrealDB versions prior to 2.1.0 **Description** A denial of service issue exists in role conversion. Privileged owner users can define users with nonexistent roles, which allows an attacker to trigger an uncaught panic—a critical error that causes the program to terminate—by signing in with a user assigned an invalid role, resulting in a server crash. **Recommendations** Update SurrealDB to version 2.1.0 or later.