SiYuan是SiYuan团队开源的一款文档管理软件。 SiYuan 3.7.4之前版本存在跨站脚本漏洞,该漏洞源于未正确验证或转义表格列宽值,导致存储型跨站脚本注入到style属性中,攻击者可通过setAttrViewColWidth API注入恶意负载,突破style属性并在每个表格单元格上注入事件处理器,从而在启用Node集成的Electron渲染器中执行任意代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| siyuan-note | siyuan | < 3.7.4 |
affected |
3.7.4 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| siyuan-note | siyuan | 0 ~ 3.7.4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-73046 | 9.8 CRITICAL | SiYuan before v3.7.4 Authentication Bypass via HTTP Basic Auth |
| CVE-2026-73050 | 9.0 CRITICAL | SiYuan before v3.7.4 Stored XSS via select option color |
| CVE-2026-73043 | 9.0 CRITICAL | SiYuan before v3.7.4 Remote Code Execution via Template Calculation |
| CVE-2026-73042 | 9.0 CRITICAL | SiYuan before v3.7.4 Remote Code Execution via Menu Metadata |
| CVE-2026-73041 | 9.0 CRITICAL | SiYuan before v3.7.4 Remote Code Execution via PDF Annotations |
| CVE-2026-73053 | 9.0 CRITICAL | SiYuan before v3.7.4 Cross-Site Scripting via unicode2Emoji |
| CVE-2026-73052 | 9.0 CRITICAL | SiYuan before v3.7.4 Stored XSS via Attribute-View Field Names |
| CVE-2026-73045 | 7.5 HIGH | SiYuan before 3.7.4 Brute-Force via authFilePublishAccess |
| CVE-2026-73054 | 7.5 HIGH | SiYuan before v3.7.4 Authentication Bypass via WebSocket |
| CVE-2026-73047 | 6.2 MEDIUM | siyuan before v3.7.4 Server-Side Template Injection via attribute-view |
No comments yet