Description
SiYuan versions before 3.8.4 fail to escape bookmark labels imported from notebook files when rendering them in the dock tree. Attackers can craft malicious .sy notebook files with unescaped HTML in bookmark attributes that execute scripts in the Electron renderer with access to child_process for command execution.
Published: 2026-09-17
Score: 8.6 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution via Cross‑Site Scripting
Action: Immediate Patch
AI Analysis

Impact

SiYuan versions prior to 3.8.4 do not escape bookmark labels that are imported from external notebook files, allowing an attacker to embed malicious HTML or JavaScript in a bookmark’s attributes. When the application renders the dock tree, the unescaped code runs in the Electron renderer process. Because Electron grants the renderer access to Node.js modules, including child_process, the injected script can launch arbitrary commands, effectively giving the attacker full control over the compromised machine.

Affected Systems

All installations of SiYuan for which the version is older than 3.8.4 are affected. The vulnerability specifically targets the bookmark label rendering logic in the dock tree component; older notebooks that have already been imported into a patched version remain vulnerable if the application continues to display them without proper sanitization.

Risk and Exploitability

The CVSS score of 8.6 classifies this flaw as high severity. No EPSS score is available, but the vulnerability is not listed in CISA KEV, indicating it has not yet been widely exploited. The attack requires an attacker to supply a malicious notebook file, which can be achieved by sending a forged file to a user or compromising a trusted collaborator. Once the notebook is opened, the crafted code executes as the user, enabling full system compromise via command execution.

Generated by OpenCVE AI on September 17, 2026 at 20:33 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the official SiYuan update to version 3.8.4 or later, which sanitizes bookmark labels upon import.
  • Restrict the import of notebook files to trusted sources or perform manual verification of bookmark labels before opening them.
  • Disable the child_process module or sandbox the Electron renderer in environments where elevated privileges are a concern, to reduce the impact if XSS occurs.

Generated by OpenCVE AI on September 17, 2026 at 20:33 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Siyuan
Siyuan siyuan
Vendors & Products Siyuan
Siyuan siyuan

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 17 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Description SiYuan versions before 3.8.4 fail to escape bookmark labels imported from notebook files when rendering them in the dock tree. Attackers can craft malicious .sy notebook files with unescaped HTML in bookmark attributes that execute scripts in the Electron renderer with access to child_process for command execution.
Title SiYuan before 3.8.4 Cross-Site Scripting via Bookmark Labels
First Time appeared B3log
B3log siyuan
Weaknesses CWE-79
CPEs cpe:2.3:a:b3log:siyuan:*:*:*:*:*:*:*:*
Vendors & Products B3log
B3log siyuan
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.6, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-09-17T15:23:20.675Z

Reserved: 2026-09-17T13:55:53.935Z

Link: CVE-2026-92985

cve-icon Vulnrichment

Updated: 2026-09-17T15:23:16.614Z

cve-icon NVD

Status : Deferred

Published: 2026-09-17T15:17:01.840

Modified: 2026-09-17T16:18:35.200

Link: CVE-2026-92985

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-18T20:30:15Z

Weaknesses
  • CWE-79

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')