CVE-2026-68584: SiYuan before v3.7.3 Authentication Bypass via Content Endpoints
SiYuan versions before v3.7.3 contain an authentication bypass vulnerability in publish mode where content-returning endpoints getHeadingChildrenDOM, getHeadingTransaction, and getBacklinkDoc perform no password check despite protecting the primary getDoc endpoint. Anonymous attackers can retrieve full content of password-protected documents by obtaining internal block IDs from reader-accessible endpoints and calling unprotected content endpoints to bypass the password gate.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
SiYuanto a version that resolves this vulnerability.Fixed in v3.7.3
Event History
Frequently Asked Questions
What is the severity of CVE-2026-68584?
CVE-2026-68584 has a severity rating of 8.6, indicating a high risk level.
How do I fix CVE-2026-68584?
To fix CVE-2026-68584, upgrade to SiYuan version 3.7.3 or later.
What are the impacted versions for CVE-2026-68584?
SiYuan versions before 3.7.3 are impacted by CVE-2026-68584.
What type of vulnerability is CVE-2026-68584?
CVE-2026-68584 is an authentication bypass vulnerability.
Can anonymous attackers exploit CVE-2026-68584?
Yes, anonymous attackers can exploit CVE-2026-68584 to retrieve content without authentication.