CVE-2026-56395 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 3 intelligence report mentions.
CVE-2026-56395 is a vulnerability tracked across 1 threat cluster and 3 intelligence report mentions on ThreatCluster. First observed June 22, 2026; most recent activity June 23, 2026.
SiYuan disclosed CVE-2026-56395, a critical remote code execution vulnerability affecting versions before 3.6.1. The flaw arises from improper sanitization of Bazaar marketplace package metadata, allowing malicious…
CVE-2026-56395 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 3 intelligence report mentions.
The most recent intelligence report mentioning CVE-2026-56395 on ThreatCluster is dated June 23, 2026. Activity was first observed June 22, 2026, giving a tracked span from then to June 23, 2026.
Across ThreatCluster reporting, CVE-2026-56395 most frequently co-occurs with Zero-day Exploit, SiYuan, Cwe-79 - Cross-site Scripting (xss), T1059 - Command and Scripting Interpreter, Electron, among 6 tracked related entities.
The most significant recent cluster is “Critical RCE Vulnerability in SiYuan Bazaar Exposes Users to Malicious Packages” (5 articles · Updated June 22, 2026). CVE-2026-56395 appears across 1 threat cluster in total, listed above with sources.
CVE-2026-56395 appears in 3 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.