CVE-2024-58370
surrealdb surrealdb 취약점
SurrealDB versions before 1.1.0 fail to enforce recursion depth limits when parsing nested SurrealQL statements including IF, RELATE, and attribute access idioms. Authorized attackers can submit queries with excessive nesting depth to cause stack overflow and crash the server.
- 대응 우선순위
- 점검
- CVSS
- 7.1
- EPSS
- 0.27% 백분위 19.7% · 2026.08.03 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.07.18