Path Traversal Vulnerability in SiYuan Note by SiYuan
CVE-2026-100638
8.3HIGH
What is CVE-2026-100638?
SiYuan Note versions prior to v3.8.4 have a vulnerability in the setNotebookIcon endpoint that enables authenticated administrators to create arbitrary directory structures. By exploiting directory traversal sequences within the notebook parameter, attackers can manipulate file paths, escaping the designated workspace. This allows for the unauthorized writing of conf.json files to locations accessible by the kernel process, posing significant risks to the integrity of the application's file management.
Affected Version(s)
siyuan 0 < 3.8.4
siyuan 3.8.4
