Server-Side Template Injection in Siyuan by Siyuan Note
CVE-2026-73047

8.6HIGH

Key Information:

Status
Vendor
CVE Published:
15 August 2026

What is CVE-2026-73047?

Siyuan versions prior to 3.7.4 feature a server-side template injection vulnerability within the attribute-view template calculation. This flaw, stemming from the usage of Sprig's unaltered function map, potentially exposes critical functions that permit local, unauthenticated attackers to input malicious template calculations. Such actions could allow them to access environment variables of the processes running Siyuan, as well as execute DNS lookups from the server, posing significant risks to system integrity and confidentiality.

Affected Version(s)

siyuan 0 < 3.7.4

siyuan 3.7.4

References

CVSS V4

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

K3y5tr0ke
.