
🔒 CVE-2026-68584: SiYuan Authentication Bypass Exposed Password-Protected Documents Anonymous users could read protected SiYuan docs, no password needed. CVSS 8.6 (High), affects v3.7.2 and earlier, fixed in v3.7.3. Read the full technical breakdown: https://secnora.com/blog/cve-2026-68584-siyuan-authentication-bypass/
Post summary
CVE-2026-68584 enables unauthenticated users to read password-protected SiYuan documents, and the flaw was fixed in version 3.7.3.

