Security Advisory

CVE-2026-33670

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-03-26 21:15:56
Last updated 2026-03-30 11:43:18
Assigner GitHub_M
State PUBLISHED

Description

SiYuan is a personal knowledge management system. Prior to version 3.6.2, the /api/file/readDir interface was used to traverse and retrieve the file names of all documents under a notebook. Version 3.6.2 patches the issue.