Medium severity5.8NVD Advisory· Published Oct 2, 2026· Updated Oct 2, 2026
CVE-2026-103763
CVE-2026-103763
Description
SiYuan before v3.8.5 contains an information disclosure vulnerability that allows read-only publish readers to learn metadata of publish-excluded documents through the getNotebookInfo endpoint. Attackers, including anonymous visitors when no reader password is set, can query publish-visible notebooks to obtain document count, size and modification timestamps of hidden documents.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <3.8.5
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.