Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 26 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SiYuan versions before v3.8.4 contain a path traversal vulnerability in the exportBrowserHTML endpoint that allows authenticated administrators to write arbitrary HTML content to index.html outside the workspace directory. Attackers can supply a folder parameter with directory traversal sequences to escape the export directory and overwrite index.html in any pre-existing kernel-writable location, enabling stored XSS or workspace defacement. | |
| Title | SiYuan before v3.8.4 Path Traversal via exportBrowserHTML folder | |
| First Time appeared |
B3log
B3log siyuan |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:b3log:siyuan:*:*:*:*:*:*:*:* | |
| Vendors & Products |
B3log
B3log siyuan |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-26T13:23:10.528Z
Reserved: 2026-09-26T02:32:35.658Z
Link: CVE-2026-100636
No data.
Status : Deferred
Published: 2026-09-26T14:16:45.160
Modified: 2026-09-26T14:16:45.270
Link: CVE-2026-100636
No data.
OpenCVE Enrichment
Updated: 2026-09-26T15:15:13Z