Trilium 是一个开源的分层笔记应用。在包括 0.103.0 及以下的版本中,默认启用的“安全导入”过滤器未对笔记标题进行清理(sanitize)。GeoMap 笔记视图会将标记笔记的标题直接插入到原始 HTML 中,并通过 innerHTML 渲染,这使得攻击者提供的导入归档文件能够注入脚本,该脚本会在地图显示时执行。 由于“安全导入”虽然能中和(neutralize)脚本,但从不转义(escape)标题,因此包含 HTML 事件处理器载荷(如 )的笔记标题会在导入过程中幸存下来,并立即在受害者打开渲染该标记
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| TriliumNext | Trilium | < 0.104.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-53578 | 9.3 CRITICAL | Trilium: Note Import to RCE via Mind Elixir dangerouslySetInnerHtml |
| CVE-2026-53579 | 9.3 CRITICAL | Trilium: Note Import to RCE via Book Note |
| CVE-2026-47727 | 8.6 HIGH | Trilium: RCE via `shareTemplate` relation missing `isDangerous` flag — Safe import bypass |
| CVE-2026-53580 | 8.1 HIGH | Trilium arbitrary file read and denial of service via file:// URLs in the automatic image- |
| CVE-2026-77438 | 7.5 HIGH | Trilium unauthenticated share-search discloses password-protected and hidden shared notes |
No comments yet