CVE-2026-33670
EUVD-2026-1643426.03.2026, 22:16
SiYuan is a personal knowledge management system. Prior to version 3.6.2, the /api/file/readDir interface was used to traverse and retrieve the file names of all documents under a notebook. Version 3.6.2 patches the issue.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| b3log | siyuan | 𝑥 < 3.6.2 |
𝑥
= Vulnerable software versions