A vulnerability was found in SurrealDB up to 3.0.x and classified as critical. Impacted is an unknown function of the component Permission Check. Such manipulation leads to permission issues.

This vulnerability is traded as CVE-2026-63755. The attack may be launched remotely. There is no exploit available.