Server-Side Template Injection in Siyuan by Siyuan Note
CVE-2026-73047
8.6HIGH
What is CVE-2026-73047?
Siyuan versions prior to 3.7.4 feature a server-side template injection vulnerability within the attribute-view template calculation. This flaw, stemming from the usage of Sprig's unaltered function map, potentially exposes critical functions that permit local, unauthenticated attackers to input malicious template calculations. Such actions could allow them to access environment variables of the processes running Siyuan, as well as execute DNS lookups from the server, posing significant risks to system integrity and confidentiality.
Affected Version(s)
siyuan 0 < 3.7.4
siyuan 3.7.4
