CVE-2026-69085 | siyuan-note siyuan up to 3.7.2 Search /api/filetree/searchDocs keyword sql injection
A vulnerability described as critical has been identified in siyuan-note siyuan up to 3.7.2. This vulnerability affects unknown code of the file /api/filetree/searchDocs of the component Search. Such manipulation of the argument keyword leads to sql injection.
This vulnerability is documented as CVE-2026-69085. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More