SiYuan是SiYuan开源的一个隐私至上的个人知识管理系统。 SiYuan 3.6.2之前版本存在安全漏洞,该漏洞源于/appearance/*filepath端点路径清理不当,可能导致目录遍历和任意文件读取。
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| siyuan-note | siyuan | < 3.6.2 | - |
|
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | SiYuan is a personal knowledge management system. Prior to version 3.6.2, the Siyuan kernel exposes an unauthenticated file-serving endpoint under `/appearance/*filepath.` Due to improper path sanitization, attackers can perform directory traversal and read arbitrary files accessible to the server process. Authentication checks explicitly exclude this endpoint, allowing exploitation without valid credentials. Version 3.6.2 fixes this issue. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2026/CVE-2026-33476.yaml | POC详情 |
| CVE-2026-32938 | 9.9 CRITICAL | SiYuan 访问控制错误漏洞 |
| CVE-2026-32767 | 9.8 CRITICAL | SiYuan 安全漏洞 |
| CVE-2026-32940 | 9.3 CRITICAL | SiYuan 安全漏洞 |
| CVE-2026-33203 | 7.5 HIGH | SiYuan 访问控制错误漏洞 |
| CVE-2026-33194 | 6.8 MEDIUM | SiYuan 路径遍历漏洞 |
| CVE-2026-33067 | SiYuan 安全漏洞 | |
| CVE-2026-33066 | SiYuan 跨站脚本漏洞 |
暂无评论