SiYuan is an organization tracked by ThreatCluster, appearing in 4 threat clusters built from 4 intelligence report mentions.
SiYuan is a organization tracked across 4 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed June 22, 2026; most recent activity August 4, 2026.
SiYuan, an open-source personal knowledge management system, has disclosed a critical stored cross-site scripting (XSS) vulnerability that can escalate to remote code execution (RCE) in its Electron desktop client. The…
A critical missing authorization vulnerability (CVE-2026-66012) has been identified in SiYuan versions prior to 3.7.2, allowing remote unauthenticated attackers to bypass authentication on the POST /mcp kernel endpoint.…
SiYuan disclosed CVE-2026-56395, a critical remote code execution vulnerability affecting versions before 3.6.1. The flaw arises from improper sanitization of Bazaar marketplace package metadata, allowing malicious…
A critical SQL injection vulnerability, designated CVE-2026-69083, has been identified in SiYuan versions prior to v3.7.3. This flaw affects the fullTextSearchAssetContent endpoint, allowing unauthenticated users and…
SiYuan is an organization tracked by ThreatCluster, appearing in 4 threat clusters built from 4 intelligence report mentions.
The most recent intelligence report mentioning SiYuan on ThreatCluster is dated August 4, 2026. Activity was first observed June 22, 2026, giving a tracked span from then to August 4, 2026.
Across ThreatCluster reporting, SiYuan most frequently co-occurs with Data Breach, Sql Injection, Zero-day Exploit, CVE-2026-54158, CVE-2026-56395, among 12 tracked related entities.
The most significant recent cluster is “Critical Stored XSS Vulnerability in SiYuan Enables Remote Code Execution” (7 articles · Updated June 25, 2026). SiYuan appears across 4 threat clusters in total, listed above with sources.
SiYuan appears in 4 intelligence report mentions across 4 deduplicated threat clusters, aggregated from 17,000+ monitored sources.