Impact
SiYuan versions prior to 3.8.0 contain an incomplete path blocklist in the MCP file tool, allowing authenticated administrators to read plaintext publish-mode passwords from data/.siyuan/publishAccess.json and other sensitive files such as data/templates and data/snippets/conf.json. This flaw results in disclosure of credentials and configuration data, compromising the confidentiality of user workspaces.
Affected Systems
The vulnerability affects the Siyuan Note application (siyuan-note:siyuan). All released versions before v3.8.0 are impacted; there is no further granularity of affected minor releases provided.
Risk and Exploitability
The flaw carries a CVSS score of 6.9 and an EPSS score is not available. It is not listed in the CISA KEV catalog. Exploitation requires an authenticated administrator who can invoke the HTTP API. The incomplete blocklist permits path traversal within the API, enabling direct file reads. Attackers with administrative credentials can therefore obtain sensitive data, but the exploit cannot be performed from unauthenticated contexts.
OpenCVE Enrichment