
BREAKING: CVE-2026-73043 turns a low-privilege SiYuan database Template calculation into desktop OS command execution. The server stores text/template output verbatim. The Electron client later inserts it with innerHTML, bypassing the sanitizer used on the equivalent template-column path. CVSS 9.0 Critical.
Post summary
CVE-2026-73043 reveals a critical template injection flaw in SiYuan that enables desktop OS command execution, with a CVSS score of 9.0.


