Authentication Bypass in SiYuan by SiYuan Note
CVE-2026-73046

9.3CRITICAL

Key Information:

Status
Vendor
CVE Published:
15 August 2026

What is CVE-2026-73046?

SiYuan versions prior to 3.7.4 have a significant vulnerability in their CheckAuth() middleware, which improperly restricts the number of authentication attempts. This flaw allows remote attackers to continuously send automated requests to exploit the HTTP Basic Authentication mechanism. Instead of enforcing CAPTCHA or a lockout mechanism, the workspace access code is accepted without limitations, leading to potential unauthorized access. Additionally, the method used for comparing access codes is not secure, making it susceptible to timing attacks. As a result, attackers can gain full administrator privileges without proper authentication.

Affected Version(s)

siyuan 0 < 3.7.4

siyuan 3.7.4

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

alham-rizvi
.