CVE-2026-69085 | siyuan-note siyuan up to 3.7.2 Search /api/filetree/searchDocs keyword sql injection

SecurityVulns

A vulnerability described as critical has been identified in siyuan-note siyuan up to 3.7.2. This vulnerability affects unknown code of the file /api/filetree/searchDocs of the component Search. Such manipulation of the argument keyword leads to sql injection.

This vulnerability is documented as CVE-2026-69085. The attack can be executed remotely. There is not any exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More