Siyuan-Note
AI Threat Alert tracks 6 known AI/ML vulnerabilities affecting Siyuan-Note products — each enriched with CVSS severity, EPSS exploit probability, patch status, and CISO-grade analysis. Browse every Siyuan-Note CVE below, sorted by severity and recency.
| Severity | CVE | Headline | Package | CVSS |
|---|---|---|---|---|
| MEDIUM | CVE-2026-59853 | SiYuan: broken access control leaks private note data | 6.5 | |
| CRITICAL | CVE-2026-69083 | SiYuan: unauthenticated SQLi in full-text search endpoint | 10.0 | |
| HIGH | CVE-2026-72793 | SiYuan: getConf leaks session key, enables admin takeover | 8.6 | |
| HIGH | CVE-2026-73608 | SiYuan: missing authz exposes filtered DB rows | 8.6 | |
| CRITICAL | CVE-2026-72811 | SiYuan: SQL injection enables cross-notebook DB access | 10.0 | |
| HIGH | CVE-2026-74868 | SiYuan: unthrottled brute-force exposes published notes | 7.5 |
Frequently asked questions
How many known vulnerabilities affect Siyuan-Note?
6 AI/ML CVEs affecting Siyuan-Note products are tracked, sourced from NVD and GitHub Advisory.
What Siyuan-Note products are affected?
The CVEs below map to the Siyuan-Note AI/ML packages and tools tracked by AI Threat Alert; open any CVE to see the affected components and versions.
Where does the Siyuan-Note vulnerability data come from?
Data is sourced from NVD and GitHub Advisory, then enriched with CVSS severity, EPSS exploit probability, and patch status for each CVE.
How can I monitor Siyuan-Note for new vulnerabilities?
AI Threat Alert tracks Siyuan-Note continuously; a Pro subscription adds breaking alerts when new CVEs affecting Siyuan-Note are published.
How do I assess Siyuan-Note's security exposure?
Each CVE below carries CVSS severity and exploitation signals, so you can review the highest-severity Siyuan-Note issues first and judge the exposure for your stack.