CVE-2026-77086 | SiYuan-Note SiYuan up to 3.7.3 Bazaar packageName path traversal
A vulnerability classified as problematic was found in SiYuan-Note SiYuan up to 3.7.3. Affected by this vulnerability is an unknown functionality of the component Bazaar. The manipulation of the argument packageName results in path traversal.
This vulnerability is identified as CVE-2026-77086. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More