CVE-2026-87812 | SiYuan-Note SiYuan up to 3.8.1 Bazaar iconURL cross site scripting

SecurityVulns

A vulnerability classified as problematic was found in SiYuan-Note SiYuan up to 3.8.1. This impacts an unknown function of the component Bazaar. Executing a manipulation of the argument iconURL can lead to cross site scripting.

The identification of this vulnerability is CVE-2026-87812. The attack may be launched remotely. There is no exploit available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More