Path Traversal Vulnerability in SiYuan by SiYuan Note
CVE-2026-100636

8.3HIGH

Key Information:

Status
Vendor
CVE Published:
26 September 2026

What is CVE-2026-100636?

The vulnerability in SiYuan before version 3.8.4 arises from improper validation of user-supplied folder parameters in the exportBrowserHTML endpoint. This allows authenticated administrators to execute directory traversal attacks, leading to the possibility of overwriting the index.html file in locations outside the designated workspace directory. By exploiting this flaw, attackers can introduce arbitrary HTML content, resulting in potential stored XSS attacks or defacement of the workspace.

Affected Version(s)

siyuan 0 < 3.8.4

siyuan 3.8.4

References

CVSS V4

Score:
8.3
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

manus-use
.