← Vulnerability feed

Vulnerability record · CVE-2024-58366 · published 18 July 2026

CVE-2024-58366: Delskayn rquickjs vulnerability

DDelskayn · Rquickjs

SurrealDB before 1.1.1 contains a format string vulnerability in the rquickjs Exception::throw_type function when scripting is enabled. Attackers with scripting privileges can supply format string sequences in error inputs to read arbitrary memory or execute code with SurrealDB process privileges.

9.0 CVSS 4.0 Critical EPSS 0.58% · top 54.8% CWE-134 · CWE-134
9.0CVSS 4.0 base score
0.58%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
2References
13 Aug 2026Last modified by NVD

Description

SurrealDB before 1.1.1 contains a format string vulnerability in the rquickjs Exception::throw_type function when scripting is enabled. Attackers with scripting privileges can supply format string sequences in error inputs to read arbitrary memory or execute code with SurrealDB process privileges.

CVSS:4.0/AV:N/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2024-58366 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.4CVE-2025-71392Surrealdb command injection vulnerabilitySurrealDB before 2.0.5, 2.1.x before 2.1.5, and 2.2.x before 2.2.2 fails to properly escape table and field names in the command-line export command.…EPSS 0.44%9.2CVE-2026-63756Surrealdb race condition vulnerabilitySurrealDB versions before 3.1.0 contain a time-of-check/time-of-use race condition in the HTTP /rpc endpoint that allows unauthenticated requests to …EPSS 0.37%8.7CVE-2026-63760Surrealdb vulnerabilitySurrealDB before 3.1.0 fails to enforce the configured recursion depth limit in the value and JSON parser when processing nested braces, brackets, or…EPSS 0.52%8.7CVE-2026-63757Surrealdb missing authentication for critical function vulnerabilitySurrealDB versions before 3.1.0 contain a session hijacking vulnerability where the HTTP /rpc sessions method returns attached session UUIDs without …EPSS 0.54%8.7CVE-2026-63747Surrealdb vulnerabilitySurrealDB versions before 3.1.0 contain a denial of service vulnerability in the RPC use handler that panics when db is set without a namespace. Unau…EPSS 0.52%8.7CVE-2024-58362Surrealdb vulnerabilitySurrealDB before 1.5.5 (and 2.0.0-beta before 2.0.0-beta.3) accepts an arbitrary object in the signin and signup operations of the RPC API without re…EPSS 0.64%8.7CVE-2024-58368Surrealdb vulnerabilitySurrealDB versions before 1.1.0 fail to properly parse the ID, DB, and NS headers in HTTP REST API requests containing special characters. Unauthenti…EPSS 0.65%8.7CVE-2023-54366Surrealdb incorrect default permissions vulnerabilitySurrealDB before 1.0.1 sets default table permissions to FULL instead of NONE, allowing SELECT, CREATE, UPDATE, and DELETE operations on tables witho…EPSS 0.46%

Source: NIST National Vulnerability Database (record CVE-2024-58366), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.