SiYuan Windows 安装程序在 3.8.1 版本之前(受影响的版本为 2.0.14 及更高版本)存在“非受控搜索路径元素”漏洞,位于其 NSIS 安装程序中。该安装程序通过名称(而非绝对路径)调用诸如 TASKKILL 等系统可执行文件。由于 NSIS 的 在解析这些调用时,使用的搜索路径将安装程序自身的启动目录置于 System32 目录之前,因此,如果攻击者在该目录中植入一个恶意可执行文件(例如,一个重命名为 TASKKILL.exe 的二进制文件),当安装程序运行时,该文件可能会被执行。这些调用发生
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| siyuan-note | siyuan | 2.0.14 ~ 3.8.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-82654 | 8.9 HIGH | SiYuan before v3.8.1 Stored XSS via block name |
| CVE-2026-82653 | 8.9 HIGH | SiYuan before v3.8.1 Stored XSS via confirmDialog |
| CVE-2026-82652 | 5.3 MEDIUM | SiYuan before v3.8.1 Information Disclosure via Publish Access |
| CVE-2026-82651 | 4.9 MEDIUM | SiYuan before v3.8.1 Missing Authorization via /history and /repo/diff |
| CVE-2026-82650 | 4.4 MEDIUM | SiYuan before v3.8.1 Path Traversal via /api/template/render |
No comments yet