Security: siyuan-note/siyuan
Security Advisories
View known security vulnerabilities and report new vulnerabilities privately to maintainers.
-
Path Traversal via unvalidated packageName across all 10 Bazaar install/uninstall endpoints, enabling arbitrary-location file write (install) and arbitrary recursive directory deletion (uninstall)GHSA-wr4w-7vjm-mmx3 published
Aug 7, 2026 by 88250Critical -
Attribute-breakout XSS-to-RCE via unescaped document bookmark/alias/memo/name fields in the "move/link to" file-tree picker's tooltip (app/src/util/pathName.ts), triggered by hoveringGHSA-jjq3-3942-x99r published
Aug 4, 2026 by 88250High -
XSS-to-RCE via malicious filename in the upload/drag-drop validation flow (app/src/protyle/upload/index.ts), reflected unescaped into showMessage's insertAdjacentHTML sinkGHSA-jf56-jrhq-j2qp published
Aug 4, 2026 by 88250High -
/api/lute/spinBlockDOM Accessible to All Authenticated Roles Without Admin Gate or Input Size LimitGHSA-3j8q-5c8c-grwm published
Aug 4, 2026 by 88250Moderate -
SSRF via IPv6 Transition Address Bypass of SSRFSafeDialer Guard in SafeModeGHSA-qq8m-8p8v-x4xg published
Aug 4, 2026 by 88250High -
Six publish-mode reader-facing endpoints filter results using the "invisible" list instead of the "disabled" (forbidden) list, leaking content from notebooks/documents an admin explicitly disabled from publishing (update: eight endpoints confirmed, see body)GHSA-48p5-pffc-5r9p published
Aug 4, 2026 by 88250High -
Path Traversal in MCP tool database_clean (RemoveUnusedAttributeView) leads to Arbitrary File Read (via history copy) and Arbitrary File Deletion, missed by the recent GHSA-7hm9-v7vf-7g4w fixGHSA-43jx-gxq4-jpjc published
Aug 3, 2026 by 88250High -
Go net/http/pprof debug endpoints, including heap dumps, are registered fully unauthenticated whenever --mode is not exactly "prod", exposing in-memory secrets (AI provider API keys, AccessAuthCode) with no corresponding warning on the flag ```GHSA-9cqq-p2hw-mj3f published
Aug 3, 2026 by 88250Critical