VYPR

Siyuan

by Siyuan Note

Source repositories

CVEs (198)

  • CVE-2026-32751CriMar 19, 2026
    risk 0.52cvss 9.0epss 0.01

    SiYuan is a personal knowledge management system. In versions 3.6.0 and below, the mobile file tree (MobileFiles.ts) renders notebook names via innerHTML without HTML escaping when processing renamenotebook WebSocket events. The desktop version (Files.ts) properly uses…

  • CVE-2026-25539CriFeb 4, 2026
    risk 0.52cvss 9.1epss 0.01

    SiYuan is a personal knowledge management system. Prior to version 3.5.5, the /api/file/copyFile endpoint does not validate the dest parameter, allowing authenticated users to write files to arbitrary locations on the filesystem. This can lead to Remote Code Execution (RCE) by…

  • CVE-2025-21609CriJan 3, 2025
    risk 0.52cvss 9.1epss 0.01

    SiYuan is self-hosted, open source personal knowledge management software. SiYuan Note version 3.1.18 has an arbitrary file deletion vulnerability. The vulnerability exists in the `POST /api/history/getDocHistoryContent` endpoint. An attacker can craft a payload to exploit this…

  • CVE-2026-82654HigAug 30, 2026
    risk 0.51cvss 8.9epss 0.00

    SiYuan before v3.8.1 fails to properly escape block name, alias, and memo fields in hint, backlink, and breadcrumb rendering functions. Attackers can set a block's name to contain HTML/script tags that execute when another user views documents referencing or displaying that…

  • CVE-2026-82653HigAug 30, 2026
    risk 0.51cvss 8.9epss 0.00

    SiYuan before v3.8.1 contains a stored cross-site scripting vulnerability in confirmDialog() where unescaped package names and notebook names are interpolated directly into innerHTML assignments. Attackers can submit malicious bazaar packages with HTML/script payloads in the…

  • CVE-2026-93923HigSep 19, 2026
    risk 0.50cvss 8.8epss 0.00

    SiYuan through 3.8.4 fails to escape heading style attributes when rendering outline and bookmark dock HTML, allowing stored cross-site scripting. Attackers can supply crafted notebooks or call administrative endpoints to inject malicious style values that execute in the…

  • CVE-2026-93922HigSep 19, 2026
    risk 0.50cvss 8.8epss 0.01

    SiYuan through 3.8.4 renders notebook names as raw HTML in the Daily Note picker dialog without escaping, allowing stored cross-site scripting in the Electron renderer. Attackers can create notebooks with HTML payloads in names that execute JavaScript with Node.js access when…

  • CVE-2026-92986HigSep 17, 2026
    risk 0.50cvss 8.8epss 0.00

    SiYuan before 3.8.4 renders document titles as HTML in the backlink dock tree without escaping markup characters. Attackers can set malicious titles through the rename API or crafted notebooks to execute scripts in the Electron renderer with access to child_process for command…

  • CVE-2026-92985HigSep 17, 2026
    risk 0.50cvss 8.8epss 0.01

    SiYuan versions before 3.8.4 fail to escape bookmark labels imported from notebook files when rendering them in the dock tree. Attackers can craft malicious .sy notebook files with unescaped HTML in bookmark attributes that execute scripts in the Electron renderer with access to…

  • CVE-2026-87815HigSep 9, 2026
    risk 0.50cvss 8.7epss 0.00

    SiYuan versions before v3.8.2 contain a path traversal vulnerability in the /api/riff/removeRiffDeck endpoint that fails to validate the deckID parameter. An authenticated administrator can supply path traversal sequences to delete arbitrary .deck and .cards files outside the…

  • CVE-2026-86712HigSep 8, 2026
    risk 0.50cvss 8.8epss 0.00

    SiYuan before 3.8.2 trusts the attacker-writable text/siyuan clipboard MIME type and skips sanitization in the paste handler, allowing code execution in the Node-enabled desktop renderer. Attackers can craft malicious web pages that write to the clipboard, and when pasted into…

  • CVE-2026-85175HigSep 3, 2026
    risk 0.50cvss 8.8epss 0.00

    SiYuan versions <= 3.8.1 (fixed in v3.8.2) contain an incomplete blocklist in the IsForbiddenAbsPath() function (kernel/util/path_guard.go), which only blocks conf/conf.json by exact match and does not restrict the TLS private key (conf/key.pem) or CA private key (conf/ca.key)…

  • CVE-2026-85174HigSep 3, 2026
    risk 0.50cvss 8.8epss 0.00

    SiYuan before v3.8.2 logs API tokens from query parameters in plaintext to an accessible log file when full-text search requests exceed timing thresholds. Authenticated attackers can read the log file via the getFile endpoint to recover admin API tokens and gain permanent…

  • CVE-2026-54759HigJun 24, 2026
    risk 0.50cvss —epss 0.00

    SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, Lute's HTML sanitizer does not remove elements. Combined with the SiYuan Electron client's permissive security configuration, an attacker can include a malicious in a Bazaar package…

  • CVE-2026-41421HigApr 24, 2026
    risk 0.50cvss 8.8epss 0.00

    SiYuan is an open-source personal knowledge management system. Prior to 3.6.5, SiYuan desktop renders notification messages as raw HTML inside an Electron renderer. The notification route POST /api/notification/pushMsg accepts a user-controlled msg value, forwards it through the…

  • CVE-2026-29073HigMar 6, 2026
    risk 0.50cvss 8.8epss 0.00

    SiYuan is a personal knowledge management system. Prior to version 3.6.0, the /api/query/sql lets a user run sql directly, but it only checks basic auth, not admin rights, any logged-in user, even readers, can run any sql query on the database. This issue has been patched in…

  • CVE-2026-74906HigAug 18, 2026
    risk 0.49cvss 7.5epss 0.00

    SiYuan before v3.7.4 contains an incorrect authorization vulnerability in eight publish-mode reader-facing endpoints that filter results using the visibility list instead of the disabled list. Anonymous visitors can discover and read content from documents explicitly marked as…

  • CVE-2026-74904HigAug 18, 2026
    risk 0.49cvss 7.5epss 0.00

    SiYuan before v3.7.4 is missing authorization checks in 17 block metadata/content endpoints in kernel/api/block.go (including getRefText, checkBlockExist, and getBlockBreadcrumb). These handlers are gated only by basic authentication (model.CheckAuth) and lack publish-access…

  • CVE-2026-74868HigAug 17, 2026
    risk 0.49cvss 7.5epss 0.00

    SiYuan versions before 3.7.4 contain an unthrottled brute-force vulnerability in the Publish Service Basic Auth implementation (PublishServiceTransport.RoundTrip() in kernel/server/proxy/publish.go). The Publish Service runs on a separate, unauthenticated-by-default listener…

  • CVE-2026-73054HigAug 15, 2026
    risk 0.49cvss 7.5epss 0.00

    SiYuan versions before v3.7.4 contain an authentication bypass vulnerability in the WebSocket endpoint caused by differential parsing of query parameters between authentication exemption and session quarantine checks. Unauthenticated attackers can craft a malicious WebSocket URI…

Page 4 of 10