Siyuan-Note Siyuan vulnerabilities
201 known vulnerabilities affecting siyuan-note/siyuan.
Total CVEs
201
CISA KEV
0
Public exploits
7
Exploited in wild
0
Severity breakdown
CRITICAL41HIGH90MEDIUM70
Vulnerabilities
Page 6 of 11
CVE-2026-82654P3HIGHCVSS 8.9fixed in 3.8.12026-08-30
CVE-2026-82654 [HIGH] CWE-79 CVE-2026-82654: SiYuan before v3.8.1 fails to properly escape block name, alias, and memo fields in hint, backlink,
SiYuan before v3.8.1 fails to properly escape block name, alias, and memo fields in hint, backlink, and breadcrumb rendering functions. Attackers can set a block's name to contain HTML/script tags that execute when another user views documents referencing or displaying that block.
nvd
CVE-2026-82234P3HIGHCVSS 8.2fixed in 3.8.12026-08-28
CVE-2026-82234 [HIGH] CWE-918 CVE-2026-82234: SiYuan versions before v3.8.1 contain a server-side request forgery vulnerability in the http_reques
SiYuan versions before v3.8.1 contain a server-side request forgery vulnerability in the http_request and web_fetch agent tools that perform DNS resolution only at guard time without validating the connect-time resolution. Attackers can use DNS rebinding to answer the guard resolution with a public IP and the connect resolution with a private or metad
nvd
CVE-2026-74801P3HIGHCVSS 8.2fixed in 3.7.42026-08-17
CVE-2026-74801 [HIGH] CWE-78 CVE-2026-74801: SiYuan before 3.7.4 fails to properly escape workspace directory paths when constructing command-lin
SiYuan before 3.7.4 fails to properly escape workspace directory paths when constructing command-line arguments for the elevated elevator.exe helper process. Attackers can create a malicious workspace directory with command metacharacters in its path and trigger the Microsoft Defender exclusion flow to execute arbitrary commands with administrator priv
nvd
CVE-2026-100643P3HIGHCVSS 8.0≥ 2.10.8, < 3.8.42026-09-26
CVE-2026-100643 [HIGH] CWE-79 CVE-2026-100643: SiYuan versions before v3.8.4 fail to properly escape four stored Attribute View values in textarea
SiYuan versions before v3.8.4 fail to properly escape four stored Attribute View values in textarea elements, allowing authenticated attackers to inject JavaScript by modifying field descriptions, template sources, select option descriptions, or footer calculation templates. Attackers can execute stored JavaScript when other users open affected databa
nvd
CVE-2026-85584P3HIGHCVSS 7.5fixed in 3.8.22026-09-04
CVE-2026-85584 [HIGH] CWE-770 CVE-2026-85584: SiYuan versions before v3.8.2 contain a denial of service vulnerability in the publish-service Basic
SiYuan versions before v3.8.2 contain a denial of service vulnerability in the publish-service Basic Auth throttle that stores failed-attempt state using attacker-controlled usernames without enforcing capacity limits or eviction policies. Unauthenticated attackers can submit repeated authentication requests with unique invalid usernames to exhaust me
nvd
CVE-2026-85581P3HIGHCVSS 7.5fixed in 3.8.22026-09-04
CVE-2026-85581 [HIGH] CWE-770 CVE-2026-85581: SiYuan before v3.8.2 contains a denial of service vulnerability in the unauthenticated /api/system/u
SiYuan before v3.8.2 contains a denial of service vulnerability in the unauthenticated /api/system/uiproc endpoint that accepts and retains attacker-controlled process identifiers without size limits or authentication. Attackers can send repeated requests with unique identifiers to exhaust process memory and degrade service availability.
nvd
CVE-2026-84803P3CRITICALCVSS 9.0fixed in 3.8.22026-09-02
CVE-2026-84803 [CRITICAL] CWE-79 CVE-2026-84803: SiYuan before v3.8.2 contains a stored cross-site scripting vulnerability in asset serving due to an
SiYuan before v3.8.2 contains a stored cross-site scripting vulnerability in asset serving due to an incomplete extension blocklist that misses script-capable file types. Attackers can upload files with extensions like .xht, .ehtml, .xsl, .xbl, or .rdf that resolve to executable media types and execute JavaScript to steal API tokens and compromise
nvd
CVE-2026-65607P3MEDIUMCVSS 6.5fixed in 3.7.22026-07-23
CVE-2026-65607 [MEDIUM] CWE-22 CVE-2026-65607: SiYuan before v3.7.2 contains a path traversal vulnerability in the /export/temp/ short-circuit bran
SiYuan before v3.7.2 contains a path traversal vulnerability in the /export/temp/ short-circuit branch of the serveExport handler (kernel/server/serve.go). Unlike the main export branch, this branch joins the raw, percent-decoded request path with util.TempDir and serves the file without the IsSubPath or IsSensitivePath checks added in the earlier ex
nvd
CVE-2026-59833P3HIGHCVSS 8.6fixed in 3.7.12026-07-09
CVE-2026-59833 [HIGH] CWE-79 CVE-2026-59833: SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, SiYuan renders note a
SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, SiYuan renders note and package content to HTML through the Lute engine with sanitization enabled, but Lute's dangerous javascript scheme block does not check form action or SVG xlink:href attributes, allowing stored cross-site scripting in document export-preview and Bazaar
nvd
CVE-2026-34585P3HIGHCVSS 8.2fixed in 3.6.22026-03-31
CVE-2026-34585 [HIGH] CWE-79 CVE-2026-34585: SiYuan is a personal knowledge management system. Prior to version 3.6.2, a vulnerability allows cra
SiYuan is a personal knowledge management system. Prior to version 3.6.2, a vulnerability allows crafted block attribute values to bypass server-side attribute escaping when an HTML entity is mixed with raw special characters. An attacker can embed a malicious IAL value inside a .sy document, package it as a .sy.zip, and have the victim import it throu
nvd
CVE-2026-100636P3HIGHCVSS 7.6fixed in 3.8.42026-09-26
CVE-2026-100636 [HIGH] CWE-22 CVE-2026-100636: SiYuan versions before v3.8.4 contain a path traversal vulnerability in the exportBrowserHTML endpoi
SiYuan versions before v3.8.4 contain a path traversal vulnerability in the exportBrowserHTML endpoint that allows authenticated administrators to write arbitrary HTML content to index.html outside the workspace directory. Attackers can supply a folder parameter with directory traversal sequences to escape the export directory and overwrite index.htm
nvd
CVE-2026-85585P3HIGHCVSS 7.5fixed in 3.8.22026-09-04
CVE-2026-85585 [HIGH] CWE-400 CVE-2026-85585: SiYuan before v3.8.2 contains an unbounded resource consumption vulnerability in the request-concurr
SiYuan before v3.8.2 contains an unbounded resource consumption vulnerability in the request-concurrency middleware that retains mutex entries for every unique request path without eviction. Unauthenticated attackers can send numerous unique request paths to permanently increase process memory and synchronization overhead, degrading availability.
nvd
CVE-2026-74906P3HIGHCVSS 7.5fixed in 3.7.42026-08-18
CVE-2026-74906 [HIGH] CWE-863 CVE-2026-74906: SiYuan before v3.7.4 contains an incorrect authorization vulnerability in eight publish-mode reader-
SiYuan before v3.7.4 contains an incorrect authorization vulnerability in eight publish-mode reader-facing endpoints that filter results using the visibility list instead of the disabled list. Anonymous visitors can discover and read content from documents explicitly marked as forbidden from publishing by accessing search, backlink, asset content, sav
nvd
CVE-2026-30926P3HIGHCVSS 7.1fixed in 3.5.102026-03-10
CVE-2026-30926 [HIGH] CWE-284 CVE-2026-30926: SiYuan is a personal knowledge management system. Prior to 3.5.10, a privilege escalation vulnerabil
SiYuan is a personal knowledge management system. Prior to 3.5.10, a privilege escalation vulnerability exists in the publish service of SiYuan Note that allows low-privilege publish accounts (RoleReader) to modify notebook content via the /api/block/appendHeadingChildren API endpoint. The endpoint requires only the model.CheckAuth role, which accepts
nvd
CVE-2026-23851P3MEDIUMCVSS 6.5fixed in 3.5.42026-01-19
CVE-2026-23851 [MEDIUM] CWE-22 CVE-2026-23851: SiYuan is a personal knowledge management system. Versions prior to 3.5.4 contain a logic vulnerabil
SiYuan is a personal knowledge management system. Versions prior to 3.5.4 contain a logic vulnerability in the /api/file/globalCopyFiles endpoint. The function allows authenticated users to copy files from any location on the server's filesystem into the application's workspace without proper path validation. The vulnerability exists in the api/file.
nvd
CVE-2026-85578P3MEDIUMCVSS 6.5≤ 3.8.12026-09-04
CVE-2026-85578 [MEDIUM] CWE-862 CVE-2026-85578: SiYuan through 3.8.1 contains an authorization bypass vulnerability in the /api/file/getFile endpoin
SiYuan through 3.8.1 contains an authorization bypass vulnerability in the /api/file/getFile endpoint that allows readers to retrieve files from notebooks explicitly configured as Visible:false. Attackers with reader role can access private workspace files including notebook metadata and internal configuration by knowing the hidden notebook identifi
nvd
CVE-2026-32704P3MEDIUMCVSS 6.5fixed in 3.6.12026-03-16
CVE-2026-32704 [MEDIUM] CWE-285 CVE-2026-32704: SiYuan is a personal knowledge management system. Prior to 3.6.1, POST /api/template/renderSprig lac
SiYuan is a personal knowledge management system. Prior to 3.6.1, POST /api/template/renderSprig lacks model.CheckAdminRole, allowing any authenticated user to execute arbitrary SQL queries against the SiYuan workspace database and exfiltrate all note content, metadata, and custom attributes. This vulnerability is fixed in 3.6.1.
nvd
CVE-2026-44586P3HIGHCVSS 8.3v>= 2.1.12, < 3.7.02026-05-14
CVE-2026-44586 [HIGH] CWE-79 CVE-2026-44586: SiYuan is an open-source personal knowledge management system. From 2.1.12 to before 3.7.0. SiYuan's
SiYuan is an open-source personal knowledge management system. From 2.1.12 to before 3.7.0. SiYuan's Bazaar marketplace renders package author metadata from the public bazaar stage feed into HTML without escaping. In the desktop app this becomes stored XSS, and because SiYuan's Electron windows are created with nodeIntegration: true and contextIsolatio
nvd
CVE-2026-74802P3HIGHCVSS 8.2fixed in 3.7.42026-08-17
CVE-2026-74802 [HIGH] CWE-346 CVE-2026-74802: SiYuan versions before 3.7.4 contain a cross-site WebSocket hijacking vulnerability in the admin-onl
SiYuan versions before 3.7.4 contain a cross-site WebSocket hijacking vulnerability in the admin-only /ws/network/proxy endpoint that explicitly disables origin validation by setting CheckOrigin to unconditionally return true. Attackers can craft malicious webpages that establish WebSocket connections to this endpoint and direct the SiYuan kernel proc
nvd
CVE-2026-87811P3HIGHCVSS 7.3fixed in 3.8.22026-09-09
CVE-2026-87811 [HIGH] CWE-79 CVE-2026-87811: SiYuan before v3.8.2 inserts persisted notebook template paths into HTML input value attributes with
SiYuan before v3.8.2 inserts persisted notebook template paths into HTML input value attributes without proper attribute encoding. Attackers can craft malicious template paths that break out of the attribute context and execute JavaScript when a victim opens notebook configuration, enabling same-origin API requests and application state manipulation.
nvd