cbcvebase.

Siyuan-Note Siyuan vulnerabilities

201 known vulnerabilities affecting siyuan-note/siyuan.

Total CVEs
201
CISA KEV
0
Public exploits
7
Exploited in wild
0
Severity breakdown
CRITICAL41HIGH90MEDIUM70

Vulnerabilities

Page 9 of 11
CVE-2026-73049P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-14
CVE-2026-73049 [MEDIUM] CWE-863 CVE-2026-73049: SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getAttributeVie SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getAttributeViewBacklinks endpoint that consults the forbidden access list instead of the visibility list when filtering backlinks. Anonymous readers can supply a publicly visible database row identifier to discover hidden-tier documents that reference it, receiving
nvd
CVE-2026-73607P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-13
CVE-2026-73607 [MEDIUM] CWE-862 CVE-2026-73607: SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the /api/storage/ge SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the /api/storage/getOutlineStorage endpoint that performs no authorization checks. Attackers can retrieve outline state including heading identifiers for any document by supplying its identifier, even for documents forbidden to the requester.
nvd
CVE-2026-72803P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-12
CVE-2026-72803 [MEDIUM] CWE-862 CVE-2026-72803: SiYuan versions before v3.7.4 fail to enforce publish-access checks in the getBlockAttrs and batchGe SiYuan versions before v3.7.4 fail to enforce publish-access checks in the getBlockAttrs and batchGetBlockAttrs endpoints. Attackers can retrieve block attributes including names, aliases, memos, and custom fields from protected documents by sending POST requests with block IDs.
nvd
CVE-2026-72799P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-12
CVE-2026-72799 [MEDIUM] CWE-862 CVE-2026-72799: SiYuan before v3.7.4 (affected <=v3.7.2) fails to enforce publish-access filters on five filetree pa SiYuan before v3.7.4 (affected <=v3.7.2) fails to enforce publish-access filters on five filetree path-resolution endpoints (getFullHPathByID, getHPathByID, getPathByID, getIDsByHPath, and getHPathByPath). In publish mode, when Publish.Auth.Enable is false, an unauthenticated (anonymous) reader — or any publish reader token — can call these endpoint
nvd
CVE-2026-68585P4MEDIUMCVSS 5.8fixed in 3.7.32026-08-03
CVE-2026-68585 [MEDIUM] CWE-862 CVE-2026-68585: SiYuan versions before v3.7.3 contain a metadata disclosure vulnerability in the /api/block/getBlock SiYuan versions before v3.7.3 contain a metadata disclosure vulnerability in the /api/block/getBlockInfo endpoint that returns document root metadata including title for publish-forbidden documents without publish-access checks. Anonymous readers or publish RoleReader tokens can supply a block ID to retrieve the title, notebook, path, root ID, and i
nvd
CVE-2026-103763P4MEDIUMCVSS 5.8fixed in 3.8.52026-10-02
CVE-2026-103763 [MEDIUM] CWE-200 CVE-2026-103763: SiYuan before v3.8.5 contains an information disclosure vulnerability that allows read-only publish SiYuan before v3.8.5 contains an information disclosure vulnerability that allows read-only publish readers to learn metadata of publish-excluded documents through the getNotebookInfo endpoint. Attackers, including anonymous visitors when no reader password is set, can query publish-visible notebooks to obtain document count, size and modification
nvd
CVE-2026-87810P4MEDIUMCVSS 5.3fixed in 3.8.22026-09-09
CVE-2026-87810 [MEDIUM] CWE-200 CVE-2026-87810: Siyuan before v3.8.2 contains an information disclosure vulnerability in the POST /api/search/fullTe Siyuan before v3.8.2 contains an information disclosure vulnerability in the POST /api/search/fullTextSearchBlock endpoint that filters private blocks from results but returns unfiltered match counts. Unauthenticated publish-mode readers can submit arbitrary search terms to learn whether matching content exists in hidden or unpublished documents and
nvd
CVE-2026-87812P4MEDIUMCVSS 6.8fixed in 3.8.22026-09-09
CVE-2026-87812 [MEDIUM] CWE-79 CVE-2026-87812: SiYuan before v3.8.2 contains a stored cross-site scripting vulnerability in Bazaar package cards wh SiYuan before v3.8.2 contains a stored cross-site scripting vulnerability in Bazaar package cards where the iconURL metadata is inserted directly into HTML img src attributes without escaping. Attackers can inject malicious URLs with event handlers that execute JavaScript in the authenticated SiYuan origin when users view Bazaar listings, enabling AP
nvd
CVE-2026-73610P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-13
CVE-2026-73610 [MEDIUM] CWE-639 CVE-2026-73610: SiYuan before v3.7.4 contains an information disclosure vulnerability in the local storage filter th SiYuan before v3.7.4 contains an information disclosure vulnerability in the local storage filter that returns the administrator's entire storage map with only three keys sanitized. Unauthenticated attackers or publish readers can retrieve closed-tab history, search keywords, private document identifiers, and expanded folder paths by calling the get
nvd
CVE-2026-73606P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-13
CVE-2026-73606 [MEDIUM] CWE-639 CVE-2026-73606: SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the /api/block/getR SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the /api/block/getRefIDs endpoint that fails to check password-protected document tiers. Unauthenticated readers can discover that password-protected documents reference specific blocks and obtain block identifiers without entering the document password.
nvd
CVE-2026-73609P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-13
CVE-2026-73609 [MEDIUM] CWE-862 CVE-2026-73609: SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getBookmarkLabe SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getBookmarkLabels endpoint that returns all bookmark labels in the workspace without publish-access filtering. Anonymous readers and publish-mode readers can obtain the complete bookmark vocabulary across the workspace, disclosing subject matter and organizational i
nvd
CVE-2026-72805P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-12
CVE-2026-72805 [MEDIUM] CWE-862 CVE-2026-72805: SiYuan versions before v3.7.4 fail to enforce publish-access checks on getBlockBreadcrumb, getRefTex SiYuan versions before v3.7.4 fail to enforce publish-access checks on getBlockBreadcrumb, getRefText, and getBlockTreeInfos endpoints, allowing disclosure of protected document content and metadata. Anonymous readers or publish RoleReader accounts can retrieve document titles, ancestor block content snippets, reference text, and path metadata for p
nvd
CVE-2026-72790P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-12
CVE-2026-72790 [MEDIUM] CWE-862 CVE-2026-72790: SiYuan before v3.7.4 contains an information disclosure vulnerability in the /api/notebook/getNotebo SiYuan before v3.7.4 contains an information disclosure vulnerability in the /api/notebook/getNotebookInfo endpoint that returns notebook metadata without authorization checks. Attackers can read notebook names, document counts, sizes, and timestamps for closed or non-published notebooks that should be hidden from readers.
nvd
CVE-2026-72792P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-12
CVE-2026-72792 [MEDIUM] CWE-863 CVE-2026-72792: SiYuan before v3.7.4 contains an information disclosure vulnerability in the /api/tag/getTag endpoin SiYuan before v3.7.4 contains an information disclosure vulnerability in the /api/tag/getTag endpoint that returns tag labels and occurrence counts from password-protected documents to unauthenticated readers. Attackers can enumerate tag vocabulary and internal terminology from password-protected documents by calling the tag endpoint without providi
nvd
CVE-2026-72797P4MEDIUMCVSS 5.8fixed in 3.7.42026-08-12
CVE-2026-72797 [MEDIUM] CWE-862 CVE-2026-72797: SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getEncryptedNot SiYuan versions before v3.7.4 contain an information disclosure vulnerability in the getEncryptedNotebookStatus endpoint that returns encrypted notebook identifiers, names, and lock states without publish-access filtering. Anonymous readers and publish-mode accounts can enumerate all encrypted notebooks and their current unlock status, revealing sen
nvd
CVE-2026-103762P4MEDIUMCVSS 5.3fixed in 3.8.52026-10-02
CVE-2026-103762 [MEDIUM] CWE-862 CVE-2026-103762: SiYuan before v3.8.5 contains a missing authorization vulnerability in the getRefCreateSavePath, get SiYuan before v3.8.5 contains a missing authorization vulnerability in the getRefCreateSavePath, getShorthandSavePath, and getDocCreateSavePath endpoints that allows read-only publish visitors to learn unpublished notebook box IDs. Attackers with read-only or anonymous publish access can POST any open notebook ID to receive the global save-box ID
nvd
CVE-2026-101092P4MEDIUMCVSS 5.3fixed in 3.8.42026-09-28
CVE-2026-101092 [MEDIUM] CWE-200 CVE-2026-101092: SiYuan before v3.8.4 fails to enforce publish-access checks in the getCurrentAttrViewImages endpoint SiYuan before v3.8.4 fails to enforce publish-access checks in the getCurrentAttrViewImages endpoint, allowing publish readers to retrieve image asset paths from unauthorized databases. Attackers can call the endpoint with an unrendered database identifier obtained through related endpoints to leak detached-row image asset paths and filenames that
nvd
CVE-2026-32747P4MEDIUMCVSS 4.9fixed in 3.6.12026-03-19
CVE-2026-32747 [MEDIUM] CWE-22 CVE-2026-32747: SiYuan is a personal knowledge management system. In versions 3.6.0 and below, the globalCopyFiles A SiYuan is a personal knowledge management system. In versions 3.6.0 and below, the globalCopyFiles API eads source files using filepath.Abs() with no workspace boundary check, relying solely on util.IsSensitivePath() whose blocklist omits /proc/, /run/secrets/, and home directory dotfiles. An admin can copy /proc/1/environ or Docker secrets into the
nvd
CVE-2026-59854P4MEDIUMCVSS 4.9fixed in 3.7.12026-07-09
CVE-2026-59854 [MEDIUM] CWE-693 CVE-2026-59854: SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, POST /api/file/global SiYuan is an open-source personal knowledge management system. Prior to 3.7.1, POST /api/file/globalCopyFiles accepts attacker-supplied absolute source paths and relies on util.IsSensitivePath in kernel/util/path.go, whose denylist misses common home-directory credential files such as .git-credentials, .netrc, .pgpass, .kube/config, .docker/config.j
nvd
CVE-2026-82651P4MEDIUMCVSS 4.9fixed in 3.8.12026-08-30
CVE-2026-82651 [MEDIUM] CWE-200 CVE-2026-82651: SiYuan before v3.8.1 does not apply the IsForbiddenAbsPath guard (introduced in GHSA-c8r8-95hg-mp34) SiYuan before v3.8.1 does not apply the IsForbiddenAbsPath guard (introduced in GHSA-c8r8-95hg-mp34) to the /history/*path and /repo/diff/*path endpoints in kernel/server/serve.go. These routes require admin authentication but construct file paths independently, so an authenticated administrator can retrieve historical snapshots of sensitive files t
nvd
Siyuan-Note Siyuan vulnerabilities | cvebase