MEDIUM 6.9 NVD
CVE-2026-82233
SiYuan before v3.8.1 contains a path traversal vulnerability in the asset.upload MCP tool that accepts arbitrary absolute file paths without workspace boundary
SiYuan before v3.8.1 contains a path traversal vulnerability in the asset.upload MCP tool that accepts arbitrary absolute file paths without workspace boundary validation. Attackers can induce the AI Agent to upload sensitive files such as SSH keys or credentials from outside the workspace into the asset directory through prompt injection.
References
- https://github.com/siyuan-note/siyuan/security/advisories/GHSA-p23f-cm6q-2qp8
- https://www.vulncheck.com/advisories/siyuan-before-3.8.1-path-traversal-via-asset-upload
This medium severity vulnerability with a CVSS score of 6.9 was published on 2026-08-28 via NVD.
vulnfeed aggregates 11493 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.