SiYuan is a personal knowledge management system. Prior to version 3.6.2, a malicious website can achieve Remote Code Execution (RCE) on any desktop running SiYuan by exploiting the permissive CORS p…
Critical CVSS 9.6
Summary
SiYuan is a personal knowledge management system. Prior to version 3.6.2, a malicious website can achieve Remote Code Execution (RCE) on any desktop running SiYuan by exploiting the permissive CORS policy (Access-Control-Allow-Origin: * + Access-Control-Allow-Private-Network: true) to inject a JavaScript snippet via the API. The injected snippet executes in Electron's Node.js context with full OS access the next time the user opens SiYuan's UI. No user interaction is required beyond visiting th…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://github.com/siyuan-note/siyuan/issues/17246 Issue Tracking
- https://github.com/siyuan-note/siyuan/releases/tag/v3.6.2 Release Notes
- https://github.com/siyuan-note/siyuan/security/advisories/GHSA-68p4-j234-43mv Exploit
- https://github.com/siyuan-note/siyuan/security/advisories/GHSA-68p4-j234-43mv Exploit
Timeline
- nvd_ingest NVD