cbcvebase.

Github.Com Siyuan-Note Siyuan Kernel vulnerabilities

94 known vulnerabilities affecting github.com/siyuan-note_siyuan_kernel.

Total CVEs
94
CISA KEV
0
Public exploits
10
Exploited in wild
1
Severity breakdown
CRITICAL21HIGH38MEDIUM33LOW2

Vulnerabilities

Page 2 of 5
CVE-2026-72810P3HIGHCVSS 8.6≥ 0, < 0.0.0-20260723013612-ba948639d7f62026-09-03
CVE-2026-72810 [HIGH] CWE-862 SiYuan: Publish-boundary bypass via WebSocket broadcast: anonymous readers receive a live unfiltered feed of all edits including protected/forbidden documents (publish mode) SiYuan: Publish-boundary bypass via WebSocket broadcast: anonymous readers receive a live unfiltered feed of all edits including protected/forbidden documents (publish mode) **CVE:** This vulnerability corresponds to [CVE-2026-72810](https://nvd.nist.gov/vuln/detail/CVE-2026-72810). ### Summar
ghsa
CVE-2026-72789P3HIGHCVSS 8.6≥ 0, < 0.0.0-20260726020813-a25c2dd06aae2026-09-08
CVE-2026-72789 [HIGH] CWE-862 SiYuan: The publish-access gate treats encrypted notebooks as publicly accessible by default, allowing anonymous readers to retrieve fully decrypted document content while a notebook is unlocked SiYuan: The publish-access gate treats encrypted notebooks as publicly accessible by default, allowing anonymous readers to retrieve fully decrypted document content while a notebook is unlocked **CVE:** This vulnerability corresponds to [CVE-2026-72789](https://nvd.nist.go
ghsa
CVE-2026-33066P3MEDIUMCVSS 5.3≥ 0, < 0.0.0-20260414013942-62eed37a32632026-04-14
CVE-2026-33066 [MEDIUM] CWE-79 SiYuan has incomplete fix for CVE-2026-33066: XSS SiYuan has incomplete fix for CVE-2026-33066: XSS ### Summary The incomplete fix for SiYuan's bazaar README rendering enables the Lute HTML sanitizer but fails to block `` tags, allowing stored XSS via `srcdoc` attributes containing embedded scripts that execute in the Electron context. ### Affected Package - **Ecosystem:** Go - **Package:** github.com/siyuan-note/siyuan - **Affected versions:** = commit b382f50
ghsaosv
CVE-2026-44588P3HIGHCVSS 8.2≥ 0, ≤ 0.0.0-20260421031503-96dfe0bea4742026-05-08
CVE-2026-44588 [HIGH] CWE-116 SiYuan: Electron Renderer RCE via decodeURIComponent-driven tooltip XSS in aria-label sink (incomplete fix for CVE-2026-34585) SiYuan: Electron Renderer RCE via decodeURIComponent-driven tooltip XSS in aria-label sink (incomplete fix for CVE-2026-34585) ## Summary The tooltip mouseover handler in `app/src/block/popover.ts` reads `aria-label` via `getAttribute` and passes it through `decodeURIComponent` before assigning to `messageElement.innerHTML` in `app/src/dia
ghsa
CVE-2026-72809P3HIGHCVSS 8.0≥ 0, < 0.0.0-20260723031701-9c16e9851f0b2026-09-03
CVE-2026-72809 [HIGH] CWE-290 SiYuan: Localhost-trust admin bypass on auth-code-gated endpoints, with potential remote reachability via the fixed-port proxy SiYuan: Localhost-trust admin bypass on auth-code-gated endpoints, with potential remote reachability via the fixed-port proxy **CVE:** This vulnerability corresponds to [CVE-2026-72809](https://nvd.nist.gov/vuln/detail/CVE-2026-72809). ### Summary The kernel's `CheckAuth` grants `RoleAdministrator` to any request whose `RemoteAddr` is lo
ghsa
CVE-2024-55660P3MEDIUM≥ 0, ≤ 0.0.0-20241210012039-5129ad926a212024-12-11
CVE-2024-55660 [MEDIUM] CWE-1336 SiYuan has an SSTI via /api/template/renderSprig SiYuan has an SSTI via /api/template/renderSprig ### Summary Siyuan's /api/template/renderSprig endpoint is vulnerable to Server-Side Template Injection (SSTI) through the Sprig template engine. Although the engine has limitations, it allows attackers to access environment variables ### Impact Information leakage
ghsaosv
CVE-2025-67488P3HIGH≥ 0, ≤ 0.0.0-20251202123337-6ef83b42c7ce2025-12-09
CVE-2025-67488 [HIGH] CWE-22 SiYuan: ZipSlip -> Arbitrary File Overwrite -> RCE SiYuan: ZipSlip -> Arbitrary File Overwrite -> RCE ### Summary Function [**importZipMd**](https://github.com/siyuan-note/siyuan/blob/dae6158860cc704e353454565c96e874278c6f47/kernel/api/import.go#L190) is vulnerable to **ZipSlip** which allows an authenticated user to overwrite files on the system. ### Details An authenticated user with access to the import functionality in notes is able to overwrite any file on the
ghsaosv
CVE-2026-32751P3MEDIUM≥ 0, ≤ 0.0.0-20260313024916-fd6526133bb32026-03-16
CVE-2026-32751 [MEDIUM] CWE-79 SiYuan Vulnerable to Remote Code Execution via Stored XSS in Notebook Name - Mobile Interface SiYuan Vulnerable to Remote Code Execution via Stored XSS in Notebook Name - Mobile Interface # Remote Code Execution via Stored XSS in Notebook Name - Mobile Interface ## Summary SiYuan's mobile file tree (`MobileFiles.ts`) renders notebook names via `innerHTML` without HTML escaping when processing `renamenotebook` WebSocket events. The desktop version (`Files.ts`) pr
ghsaosv
CVE-2026-29073P3MEDIUM≥ 0, ≤ 0.0.0-20260113130602-4ba64580c29c2026-03-03
CVE-2026-29073 [MEDIUM] CWE-862 SiYuan's direct SQL Query API accessible to Reader-level users enables unauthorized database access SiYuan's direct SQL Query API accessible to Reader-level users enables unauthorized database access ### Summary /api/query/sql allows users to run SQL directly, but it only checks basic auth, not admin rights, any logged-in user, even readers, can run any SQL query on the database. ### Details The vulnerable endpoint is in kernel/api/sql.go ```go func SQL(c *gin
ghsaosv
CVE-2026-32110P3HIGH≥ 0, < 3.6.02026-03-12
CVE-2026-32110 [HIGH] CWE-918 SiYuan has a Full-Read SSRF via /api/network/forwardProxy SiYuan has a Full-Read SSRF via /api/network/forwardProxy ### Summary The `/api/network/forwardProxy` endpoint allows authenticated users to make arbitrary HTTP requests from the server. The endpoint accepts a user-controlled URL and makes HTTP requests to it, returning the full response body and headers. There is no URL validation to prevent requests to internal networks, localhost, or cloud metadata servic
ghsaosv
CVE-2026-72798P3HIGHCVSS 8.6≥ 0, < 0.0.0-20260724121519-426991d155c02026-09-04
CVE-2026-72798 [HIGH] CWE-862 SiYuan: Publish-access filter on renderAttributeView leaves related-database content unfiltered and fails open on non-block first columns SiYuan: Publish-access filter on renderAttributeView leaves related-database content unfiltered and fails open on non-block first columns **CVE:** This vulnerability corresponds to [CVE-2026-72798](https://nvd.nist.gov/vuln/detail/CVE-2026-72798). ### Summary `renderAttributeView` correctly applies the reader publish-access fil
ghsa
CVE-2026-72795P3HIGHCVSS 8.6≥ 0, < 0.0.0-20260725125659-1ca1c3c9d94b2026-09-04
CVE-2026-72795 [HIGH] CWE-862 SiYuan: Embedded (transclusion) block content is returned without publish-access filtering, leaking private and password-protected document content to anonymous readers SiYuan: Embedded (transclusion) block content is returned without publish-access filtering, leaking private and password-protected document content to anonymous readers **CVE:** This vulnerability corresponds to [CVE-2026-72795](https://nvd.nist.gov/vuln/detail/CVE-2026-72795). ### Summary `/api/b
ghsa
CVE-2026-72793P3HIGHCVSS 8.6≥ 0, < 0.0.0-20260725132049-2d8b98395a912026-09-04
CVE-2026-72793 [HIGH] CWE-522 SiYuan: Non-administrator responses from /api/system/getConf omit three secrets that the configuration-export path explicitly strips, disclosing the session-cookie signing key and the OS username to a SiYuan: Non-administrator responses from /api/system/getConf omit three secrets that the configuration-export path explicitly strips, disclosing the session-cookie signing key and the OS username to anonymous readers **CVE:** This vulnerability corresponds to [CVE-202
ghsa
CVE-2026-39846P3CRITICAL≥ 0, < 0.0.0-20260407035653-2f416e5253f12026-04-08
CVE-2026-39846 [CRITICAL] CWE-79 SiYuan: Remote Code Execution in the Electron desktop client via stored XSS in synced table captions SiYuan: Remote Code Execution in the Electron desktop client via stored XSS in synced table captions ### Summary A malicious note synced to another user can trigger remote code execution in the SiYuan Electron desktop client. The root cause is that table caption content is stored without safe escaping and later unescaped into rendered HTML, creating a stored XSS
ghsaosv
CVE-2026-32749P3HIGH≥ 0, ≤ 0.0.0-20260313024916-fd6526133bb32026-03-16
CVE-2026-32749 [HIGH] CWE-22 SiYuan importSY/importZipMd: path traversal via multipart filename enables arbitrary file write SiYuan importSY/importZipMd: path traversal via multipart filename enables arbitrary file write ### Summary POST /api/import/importSY and POST /api/import/importZipMd write uploaded archives to a path derived from the multipart filename field without sanitization, allowing an admin to write files to arbitrary locations outside the temp directory - including system paths t
ghsaosv
CVE-2026-40318P3HIGH≥ 0, < 3.6.40.0.0-20260407035653-2f416e5253f12026-04-10
CVE-2026-40318 [HIGH] CWE-24 SiYuan: Publish Reader Path Traversal Delete via `removeUnusedAttributeView` SiYuan: Publish Reader Path Traversal Delete via `removeUnusedAttributeView` ## Summary The endpoint `/api/av/removeUnusedAttributeView` is vulnerable to a **path traversal (CWE-22)** that allows an attacker to delete arbitrary `.json` files on the server. The issue arises because user-controlled input (`id`) is directly used in filesystem path construction without validation or restricti
ghsa
CVE-2026-33067P3MEDIUM≥ 0, < 0.0.0-20260317012524-fe4523fff2c82026-03-18
CVE-2026-33067 [MEDIUM] CWE-79 SiYuan has Stored XSS to RCE via Unsanitized Bazaar Package Metadata SiYuan has Stored XSS to RCE via Unsanitized Bazaar Package Metadata # Stored XSS to RCE via Unsanitized Bazaar Package Metadata ## Summary SiYuan's Bazaar (community marketplace) renders package metadata fields (`displayName`, `description`) using template literals without HTML escaping. A malicious package author can inject arbitrary HTML/JavaScript into these fields, which executes automatic
ghsaosv
CVE-2026-72804P3HIGHCVSS 8.6≥ 0, < 0.0.0-20260724091654-82e9ded423e42026-09-03
CVE-2026-72804 [HIGH] CWE-200 SiYuan: Graph endpoints omit the publish-password tier: anonymous readers receive block-level content of password-protected documents SiYuan: Graph endpoints omit the publish-password tier: anonymous readers receive block-level content of password-protected documents **CVE:** This vulnerability corresponds to [CVE-2026-72804](https://nvd.nist.gov/vuln/detail/CVE-2026-72804). ### Summary `getGraph` and `getLocalGraph` filter reader sessions against the *visibility
ghsa
CVE-2026-68586P3HIGHCVSS 8.6≥ 0, < 0.0.0-20260721014413-f45749a7ef6e2026-09-03
CVE-2026-68586 [HIGH] CWE-862 SiYuan: Cross-boundary content disclosure via getBacklinkDoc/getBackmentionDoc (publish mode): reader-reachable rendered DOM of publish-forbidden docs; sibling list endpoints are filtered SiYuan: Cross-boundary content disclosure via getBacklinkDoc/getBackmentionDoc (publish mode): reader-reachable rendered DOM of publish-forbidden docs; sibling list endpoints are filtered **CVE:** This vulnerability corresponds to [CVE-2026-68586](https://nvd.nist.gov/vuln/detail/
ghsa
CVE-2026-34448P3CRITICAL≥ 0, < 3.6.22026-03-31
CVE-2026-34448 [CRITICAL] CWE-79 SiYuan: Stored XSS in Attribute View Gallery/Kanban Cover Rendering Allows Arbitrary Command Execution in Desktop Client SiYuan: Stored XSS in Attribute View Gallery/Kanban Cover Rendering Allows Arbitrary Command Execution in Desktop Client ### Summary An attacker who can place a malicious URL in an Attribute View `mAsse` field can trigger stored XSS when a victim opens the Gallery or Kanban view with “Cover From -> Asset Field” enabled. The vulnerable code acc
ghsaosv
Github.Com Siyuan-Note Siyuan Kernel vulnerabilities | cvebase