Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 30 Aug 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SiYuan before v3.8.1 does not apply the IsForbiddenAbsPath guard (introduced in GHSA-c8r8-95hg-mp34) to the /history/*path and /repo/diff/*path endpoints in kernel/server/serve.go. These routes require admin authentication but construct file paths independently, so an authenticated administrator can retrieve historical snapshots of sensitive files that the guard is meant to block, including data/.siyuan/publishAccess.json (plaintext publish-mode passwords) and files under data/templates/. | |
| Title | SiYuan before v3.8.1 Missing Authorization via /history and /repo/diff | |
| First Time appeared |
B3log
B3log siyuan |
|
| Weaknesses | CWE-200 | |
| CPEs | cpe:2.3:a:b3log:siyuan:*:*:*:*:*:*:*:* | |
| Vendors & Products |
B3log
B3log siyuan |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-08-30T14:33:33.112Z
Reserved: 2026-08-30T13:38:00.102Z
Link: CVE-2026-82651
No data.
Status : Received
Published: 2026-08-30T15:16:45.753
Modified: 2026-08-30T15:16:45.753
Link: CVE-2026-82651
No data.
OpenCVE Enrichment
Updated: 2026-08-30T15:30:18Z
-
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor