B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2026-54069 - SiYuan: Unauthenticated Admin API Access via Blanket chrome-extension:// Origin Allowlist

CVE ID :CVE-2026-54069 Published : June 24, 2026, 9:17 p.m. | 5 hours, 54 minutes ago Description :SiYuan is an open-source personal knowledge management system. Prior to 3.7.0, SiYuan Note's kernel HTTP server unconditionally trusts all chrome-extension:// origins, granting RoleAdministrator...

Original-Artikel öffnen Zurück zur Übersicht