思源笔记(SiYuan)v3.8.4 之前的版本在对 siyuan.db 执行的块查询嵌入块(block query embed blocks)中的 SQL 语句缺乏充分的有效性验证。攻击者可以构造恶意的 .sy 文档,其中包含非只读的 SQL 语句。这些语句会在后台执行索引、渲染或导出等操作时自动运行,且无需任何身份认证。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| siyuan-note | siyuan | 0 ~ 3.8.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet