Summary
CVE-2026-72798 is an information disclosure vulnerability in SiYuan Note, an open-source personal knowledge management system, caused by improper access-control filtering in the renderAttributeView function. The flaw allows anonymous or unauthenticated readers of a published SiYuan workspace to retrieve Relation and Rollup cell contents originating from hidden, publish-forbidden, or password-protected databases. It affects all SiYuan versions before v3.7.4 and carries a CVSS v3.1 base score of 8.6 (High), with a CVSS v4.0 score of 9.2 (Critical).
Technical details
- Root cause: the publish-access filter in
renderAttributeViewevaluates row accessibility only against the first cell (row.Cells[0].Value.Block) of each row, without validating the contents of Relation or Rollup cells that mirror data pulled in from a separate, restricted database. - A second contributing flaw: when a database’s first column holds a non-block type (e.g., text or relation) or the row lacks a block reference, the accessibility check is skipped entirely, so rows are returned with no filtering applied.
- Trigger conditions: a SiYuan instance running the Publish server with a database that is published/public but has a Relation or Rollup column pointing to a hidden, publish-forbidden, or password-protected database — or a published database whose first column is not a block reference.
- Attack vector: Network, no authentication or user interaction required; an attacker queries the public/published database API endpoint directly.
- Impact: confidentiality loss — block text, titles, and column values from restricted databases can be exposed to anonymous readers; no impact to integrity or availability.
- Relevant code paths:
kernel/api/av.go(appliesFilterViewByPublishAccess),kernel/model/publish_access.go(row filtering logic), andkernel/model/attribute_view.go(populates relation/rollup content from other databases).
Affected software
- SiYuan (siyuan-note/siyuan), gomod package
github.com/siyuan-note/siyuan/kernel - All versions ≤ v3.7.2 (and any version prior to the fix release)
- Fixed in v3.7.4
Severity
- CVSS v3.1: 8.6 (High) —
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N - CVSS v4.0: 9.2 (Critical) —
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N
Mitigation and recommended actions
- Immediate: upgrade SiYuan to v3.7.4 or later, which validates Relation and Rollup contents against publish-access rules and closes the fail-open path for non-block first columns.
- If unable to patch immediately: disable or restrict the Publish server’s anonymous/public access mode, avoid publishing databases that contain Relation or Rollup columns referencing hidden or password-protected databases, and restrict network access to the publish endpoint (e.g., via firewall/VPN) until patched.

