Security Advisory

CVE-2024-2692

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-04 01:26:58
Last updated 2025-05-19 16:59:48
Assigner Fluid Attacks
State PUBLISHED

Description

SiYuan version 3.0.3 allows executing arbitrary commands on the server. This is possible because the application is vulnerable to Server Side XSS.