siyuan-note vendor intelligence

siyuan-note Known Exploited Vulnerabilities

Track evidence-backed exploitation affecting siyuan-note products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.

Total KEVs
1
Known exploited vulnerabilities affecting siyuan-note products
In CISA KEV
0
Records also listed in the official catalog
Beyond CISA KEV
1
Additional exploited CVEs absent from CISA KEV
Sensor Observed
1
siyuan-note KEV with sensor-observed exploitation activity

The catalog gap matters for siyuan-note exposure

One of the one exploited siyuan-note CVEs tracked here are not in CISA KEV. Teams relying on the official catalog alone would miss 100% of this vendor portfolio.

0%
Covered by CISA
100%
Beyond CISA
1
Product families

Attested siyuan-note CVEs

Search the exploited-vulnerability portfolio, then narrow it to official CISA coverage or the additional records KEV Intelligence tracks beyond the catalog.

How exploitation is verified
CVE / description Product Confidence CISA KEV Added
CVE-2026-54066

SiYuan: Path Traversal via Double URL Encoding in /assets/*path (publish mode arbitrary file─read)

siyuan Confirmed Beyond CISA 04 Aug 2026

Showing 1 of 1 siyuan-note known exploited vulnerabilities.

Recurring weakness patterns

Initialization, limitation, and relative path traversal account for three mapped occurrences across this siyuan-note KEV portfolio.

Browse all KEVs →

Early warning alerts

Get alerts on high-impact exploitation

Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.

Occasional high-impact alerts. Unsubscribe anytime. See our Privacy Policy.