CVE-2026-100644 | siyuan-note SiYuan up to 3.8.3 Graph Query Endpoint dailyNoteSavePath sql injection

SecurityVulns

A vulnerability was found in siyuan-note SiYuan up to 3.8.3. It has been rated as critical. This issue affects some unknown processing of the component Graph Query Endpoint. The manipulation of the argument dailyNoteSavePath leads to sql injection.

This vulnerability is documented as CVE-2026-100644. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More