CVE-2026-74801 | siyuan-note SiYuan up to 3.7.3 Workspace Path os command injection

SecurityVulns

A vulnerability was found in siyuan-note SiYuan up to 3.7.3. It has been declared as problematic. The impacted element is an unknown function of the component Workspace Path Handler. Executing a manipulation can lead to os command injection.

This vulnerability is tracked as CVE-2026-74801. The attack is restricted to local execution. No exploit exists.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More