Security: siyuan-note/siyuan
Security Advisories
View known security vulnerabilities and report new vulnerabilities privately to maintainers.
-
Path Traversal in MCP tool database_clean (RemoveUnusedAttributeView) leads to Arbitrary File Read (via history copy) and Arbitrary File Deletion, missed by the recent GHSA-7hm9-v7vf-7g4w fixGHSA-43jx-gxq4-jpjc published
Aug 3, 2026 by 88250High -
Go net/http/pprof debug endpoints, including heap dumps, are registered fully unauthenticated whenever --mode is not exactly "prod", exposing in-memory secrets (AI provider API keys, AccessAuthCode) with no corresponding warning on the flag ```GHSA-9cqq-p2hw-mj3f published
Aug 3, 2026 by 88250Critical -
Stored XSS via arbitrary-file assets served same-origin without Content-Disposition or X-Content-Type-Options, escalating to full kernel API accessGHSA-mjf3-jwmf-r6wf published
Aug 3, 2026 by 88250Critical -
Unescaped workspace path concatenated into a UAC-elevated command line allows local privilege escalation via the bundled elevator.exe helperGHSA-vmp7-pm7g-ghcc published
Aug 3, 2026 by 88250High -
Cross-Site WebSocket Hijacking on the admin-only network proxy endpoint (`/ws/network/proxy`) via explicit `CheckOrigin: true` bypassGHSA-3cc2-h3v6-rqpq published
Aug 3, 2026 by 88250Low -
Unthrottled brute-force of `Conf.Api.Token` via header/query auth in `CheckAuth()`, allowing unlimited automated guessing of a weakened API admin tokenGHSA-m6w6-p7pc-fpg2 published
Aug 2, 2026 by 88250Critical -
PDF annotation fields are written to disk unparsed and rendered into five raw attributes, turning a shared PDF into Remote Code Execution on the desktop clientGHSA-fqpw-c3pj-w8g9 published
Aug 1, 2026 by 88250Critical -
Database menu labels are escaped in the attribute and left raw in the body of the same line, turning a field description into Remote Code Execution on the desktop clientGHSA-gcm3-qcq3-72rv published
Aug 1, 2026 by 88250Critical