HIGHVulnerability
Verified
Global

NVD HIGH: CVE-2026-33670 — SiYuan is a personal knowledge management system. Prior to version 3.6.2, the /a...

Thursday, March 26, 2026 at 10:16 PM UTC·Source: NIST NVD

Updated: Thursday, April 2, 2026 at 05:46 PM UTC

Executive Summary

SiYuan is a personal knowledge management system. Prior to version 3.6.2, the /api/file/readDir interface was used to traverse and retrieve the file names of all documents under a notebook. Version 3.6.2 patches the issue.

Analysis

SiYuan is a personal knowledge management system. Prior to version 3.6.2, the /api/file/readDir interface was used to traverse and retrieve the file names of all documents under a notebook. Version 3.6.2 patches the issue. CVSS Score: 9.8. Published: 2026-03-26T22:16:30.050.

Indicators of Compromise (1)

CVE (1)
CVE-2026-33670
Source Attribution

Originally published by NIST NVD on Mar 26, 2026. Verified by: NIST.

Related Threats