Path Traversal Vulnerability in SiYuan by SiYuan Note
CVE-2026-100637
8.3HIGH
What is CVE-2026-100637?
Versions of SiYuan prior to v3.8.4 are vulnerable to a path traversal issue through the checkoutRepo endpoint. This vulnerability permits authenticated administrators to manipulate the sessionID parameter, potentially allowing them to write JSON files outside designated workspace directories. By employing directory traversal sequences, attackers could overwrite existing JSON files within kernel-writable directories, leading to unauthorized access or data manipulation.
Affected Version(s)
siyuan 0 < 3.8.4
siyuan 3.8.4
