CVE-2026-93591 | siyuan-note SiYuan up to 3.8.2 Graph graph.go query2Stmt sql injection
A vulnerability was found in siyuan-note SiYuan up to 3.8.2. It has been declared as critical. The affected element is the function query2Stmt of the file graph.go of the component Graph. The manipulation results in sql injection.
This vulnerability is known as CVE-2026-93591. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More