VULNRABLE / Vulnerability / GHSA-3cm4-ccvw-6xr6

GHSA-3cm4-ccvw-6xr6

MEDIUM LOW github.com/siyuan-note/siyuan/kernel GHSA

Exploit verdict: No active-exploit signal

CVSS Score
5.5
Severity
MEDIUM
EPSS
—
Source
GHSA

Summary

SiYuan: /history/*path and /repo/diff/*path potentially exposing historical snapshots of data/.siyuan/publishAccess.json and data/templates/*

What this means

GHSA-3cm4-ccvw-6xr6 is a medium-severity vulnerability affecting github.com/siyuan-note/siyuan/kernel, rated CVSS 5.5. Published October 5, 2026.

View full advisory at GHSA →