
CVE-2026-73054 SiYuan versions before v3.7.4 contain an authentication bypass vulnerability in the WebSocket endpoint caused by differential parsing of query parameters between auth… https://www.cve.org/CVERecord?id=CVE-2026-73054
Post summary
A new authentication bypass in SiYuan WebSocket handling has been disclosed, affecting all versions prior to 3.7.4.


