CVE-2026-68584 | siyuan-note SiYuan up to 3.7.2 Publish Mode improper authentication

SecurityVulns

A vulnerability identified as problematic has been detected in siyuan-note SiYuan up to 3.7.2. Affected by this vulnerability is the function getHeadingChildrenDOM/getHeadingTransaction/getBacklinkDoc of the component Publish Mode. The manipulation leads to improper authentication.

This vulnerability is listed as CVE-2026-68584. The attack may be initiated remotely. There is no available exploit.

You should upgrade the affected component.VulDB Recent EntriesRead More