Daniel
50 exploits
Active since Aug 2019
SiYuan before v3.7.2 Unauthenticated Administrator Takeover via MCP
CVSS 10.0
SiYuan before v3.7.2 Stored XSS to RCE via Attribute View
CVSS 9.6
SiYuan < 3.7.2 - XSS to Remote Code Execution via Protocol Handler
CVSS 9.6
SiYuan before v3.7.2 Path Traversal via /export/temp/
CVSS 6.5
SiYuan: SQL Query in Block Search Exposes Hidden Published Document Content
CVSS 7.5
SiYuan: Incomplete IsSensitivePath denylist: globalCopyFiles reads home-dir credential dotfiles into the workspace
CVSS 4.9
SiYuan: Authenticated path traversal in /snippets/ static handler (serveSnippets) leaks conf/conf.json secrets and siyuan.db
CVSS 7.7
SiYuan: Stored XSS to RCE in SiYuan via a per-attribute URL-scheme sanitizer gap in Lute (form action / SVG xlink:href)
SiYuan: SQL Query in Block Search Exposes Hidden Published Document Content
CVSS 7.5
SiYuan < 3.7.1 Publish Mode - Private Saved Search Disclosure
CVSS 6.5
SiYuan: Incomplete IsSensitivePath denylist: globalCopyFiles reads home-dir credential dotfiles into the workspace
CVSS 4.9
SiYuan: Store XSS To Rce via Asset.render
YouPHPTube < 7.2 - SQL Injection in AuditTable.php
CVSS 5.3
YouPHPTube < 7.4 - Unauthenticated Arbitrary File Write via checkConfiguration.php
CVSS 9.8
SiYuan < 3.5.4 - Arbitrary File Read via Markdown HTML Rendering
CVSS 7.5
SiYuan < 3.5.4 - Arbitrary File Read via Markdown HTML Rendering
CVSS 7.5
SiYuan < 3.5.4 - Authenticated Path Traversal via Global Copy Files Endpoint
CVSS 6.5
SiYuan < 3.6.5 - Double-Encoded Path Traversal
SiYuan 3.6.1 to 3.6.3 - Bazaar README Stored Cross-Site Scripting
CVSS 5.4
SiYuan <3.6.2 appearance Filepath - Arbitrary File Read
CVSS 7.5
SiYuan has Stored XSS to RCE via Unsanitized Bazaar README Rendering
CVSS 9.0
SiYuan: Authorization Bypass Allows Arbitrary SQL Execution via Search API
CVSS 9.8
SiYuan <3.6.1 Desktop Publish Service - Arbitrary File Read
CVSS 9.9
SiYuan <3.6.1 getDynamicIcon - Cross-Site Scripting
CVSS 9.3
SiYuan: Incomplete sensitive path blocklist in globalCopyFiles allows reading /proc and Docker secrets
CVSS 6.8