Path Traversal Vulnerability in SiYuan Note by SiYuan
CVE-2026-100638

8.3HIGH

Key Information:

Status
Vendor
CVE Published:
26 September 2026

What is CVE-2026-100638?

SiYuan Note versions prior to v3.8.4 have a vulnerability in the setNotebookIcon endpoint that enables authenticated administrators to create arbitrary directory structures. By exploiting directory traversal sequences within the notebook parameter, attackers can manipulate file paths, escaping the designated workspace. This allows for the unauthorized writing of conf.json files to locations accessible by the kernel process, posing significant risks to the integrity of the application's file management.

Affected Version(s)

siyuan 0 < 3.8.4

siyuan 3.8.4

References

CVSS V4

Score:
8.3
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

manus-use
.