
🚨 CVE-2026-73041 - CVSS Score 9.4 (Critical): The PDF That Travels With Its Own RCE Five unescaped PDF annotation fields in SiYuan create a path from stored XSS to potential RCE. 🔗 Read full blog: https://secnora.com/blog/cve-2026-73041-siyuan-pdf-annotation-rce/
Post summary
The blog highlights a critical PDF RCE vulnerability in SiYuan via unescaped annotation fields, but no exploit code, patch, or active exploitation is mentioned.

