CyberRota Analysis
AI-GeneratedVersions of SiYuan prior to 3.8.0 have an incomplete path blocklist in the MCP file tool, allowing authenticated administrators to access sensitive workspace files through the HTTP API. This vulnerability enables the exposure of plaintext publish-mode passwords and other critical configuration files, potentially compromising the integrity and confidentiality of the system. Organizations using affected versions should prioritize remediation to safeguard sensitive data and maintain security compliance.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
SiYuan versions before v3.8.0 contain an incomplete path blocklist in the MCP file tool that fails to restrict access to sensitive workspace files protected by the HTTP API. Authenticated administrators can read plaintext publish-mode passwords from data/.siyuan/publishAccess.json and access other sensitive files like data/templates and data/snippets/conf.json.