
🚨 CVE-2026-69085: Unauthenticated SQL Injection in SiYuan's “searchDocs" Endpoint An unauthenticated SQL injection flaw allows arbitrary SQL execution in publish mode, earning a maximum CVSS v3.1 score of 10.0. 🔗 Read the full technical analysis: https://secnora.com/blog/cve-2026-69085-siyuan-sql-injection/
Post summary
The text announces the discovery of CVE-2026-69085, an unauthenticated SQL injection in SiYuan’s ‘searchDocs’ endpoint that permits arbitrary SQL execution with a maximum CVSS v3.1 score of 10.0.

