VYPR

Siyuan

by Siyuan Note

Source repositories

CVEs (212)

  • CVE-2026-66012CriJul 25, 2026
    risk 0.65cvss 10.0epss 0.01

    SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST /mcp kernel endpoint, which is gated only by a general auth check (model.CheckAuth) with no admin-role or read-only enforcement. This exposes 31 MCP tools, including a file tool with…

  • CVE-2026-73056CriAug 16, 2026
    risk 0.64cvss 9.8epss 0.01

    SiYuan kernel versions before 3.7.4 contain an improper restriction of excessive authentication attempts vulnerability in the CheckAuth() middleware. The middleware accepts the API token (Conf.Api.Token) via an Authorization header (Token/Bearer) or a ?token= query parameter,…

  • CVE-2026-73046CriAug 15, 2026
    risk 0.64cvss 9.8epss 0.01

    SiYuan before v3.7.4 improperly restricts excessive authentication attempts in the CheckAuth() middleware. The HTTP Basic Authentication branch, which guards nearly the entire /api/* surface, accepts the workspace access code (Conf.AccessAuthCode) as the Basic Auth password but…

  • CVE-2024-53507CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability was discovered in Siyuan 3.1.11 in /getHistoryItems.

  • CVE-2024-53506CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the ids array parameter in /batchGetBlockAttrs.

  • CVE-2024-53505CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the id parameter at /getAssetContent.

  • CVE-2024-53504CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the notebook parameter in /searchHistory.

  • CVE-2026-66395CriJul 27, 2026
    risk 0.62cvss 9.6epss 0.01

    SiYuan desktop before v3.7.2 contains a reflected cross-site scripting vulnerability in the bazaar plugin readme handler that allows attackers to execute arbitrary code by crafting a malicious siyuan:// deep link. Attackers can inject HTML payloads via the plugin name parameter…

  • CVE-2026-65606CriJul 23, 2026
    risk 0.62cvss 9.6epss 0.01

    SiYuan before v3.7.2 contains a cross-site scripting vulnerability in the siyuan:// protocol handler. When a siyuan://plugins/ link references a name that is not an installed plugin, the application opens a custom tab and inserts the link's icon parameter into the tab…

  • CVE-2026-65605CriJul 23, 2026
    risk 0.62cvss 9.6epss 0.01

    SiYuan before v3.7.2 contains a stored cross-site scripting vulnerability in Attribute View (database) cell rendering. A Template column value is rendered as HTML via text/template without auto-escaping, and EscapeHTML is only applied when HasUnclosedHtmlTag returns true;…

  • CVE-2026-74799CriAug 17, 2026
    risk 0.60cvss 9.3epss 0.01

    SiYuan before 3.7.4 registers Go net/http/pprof debug endpoints including heap and goroutine dumps without authentication when --mode flag is not set to exactly prod. Attackers can access /debug/pprof/heap and related endpoints to extract in-memory secrets including…

  • CVE-2026-77086CriAug 21, 2026
    risk 0.59cvss 9.1epss 0.01

    SiYuan before v3.7.4 fails to validate the packageName parameter in Bazaar install and uninstall endpoints, allowing authenticated administrators to perform path traversal via directory traversal sequences. Attackers with admin access can write arbitrary files to any location…

  • CVE-2026-74800CriAug 17, 2026
    risk 0.59cvss 9.0epss 0.00

    SiYuan before v3.7.4 fails to set Content-Disposition and X-Content-Type-Options headers when serving arbitrary file assets, allowing stored cross-site scripting attacks. Authenticated attackers can upload HTML files as assets and execute scripts with full kernel API access when…

  • CVE-2026-73053CriAug 15, 2026
    risk 0.59cvss 9.0epss 0.01

    SiYuan versions before v3.7.4 contain a cross-site scripting vulnerability in the unicode2Emoji function that fails to sanitize codepoint branch output. Attackers can craft document icons with hex-encoded markup that executes in the renderer with Node integration enabled,…

  • CVE-2026-73052CriAug 15, 2026
    risk 0.59cvss 9.0epss 0.01

    SiYuan before v3.7.4 stores attribute-view field names without HTML escaping and interpolates them directly into option elements via innerHTML in the sort menu. Attackers can inject markup by renaming a database field to execute arbitrary JavaScript when users open the sort…

  • CVE-2026-73050CriAug 15, 2026
    risk 0.59cvss 9.0epss 0.00

    SiYuan versions before v3.7.4 fail to validate or escape the color field in attribute-view select options, allowing stored cross-site scripting through eight unescaped render sites. Attackers can inject event-handler attributes by including quotation marks in the color value,…

  • CVE-2026-73044CriAug 15, 2026
    risk 0.59cvss 9.0epss 0.00

    SiYuan versions before v3.7.4 fail to validate or escape table column width values, allowing stored cross-site scripting injection into style attributes. Attackers can inject malicious payloads through the setAttrViewColWidth API that break out of style attributes and inject…

  • CVE-2026-73043CriAug 15, 2026
    risk 0.59cvss 9.0epss 0.01

    SiYuan versions before v3.7.4 contain a remote code execution vulnerability in the Template calculation operator, which renders user-authored Go templates and stores output verbatim without sanitization. Attackers can inject malicious HTML and JavaScript into template…

  • CVE-2026-73042CriAug 15, 2026
    risk 0.59cvss 9.0epss 0.01

    SiYuan before v3.7.4 fails to properly escape database menu metadata in HTML interpolation, allowing stored values to execute script when users open group, view, or field-edit menus. Attackers can inject markup through field descriptions or names that close containing elements…

  • CVE-2026-73041CriAug 15, 2026
    risk 0.59cvss 9.0epss 0.00

    SiYuan versions before v3.7.4 fail to validate or escape annotation fields written to disk by the setFileAnnotation endpoint. Attackers can inject malicious markup into annotation fields that execute as script in the PDF renderer with full Node.js access when a user opens an…

Page 1 of 11