Project Subscriptions
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Sat, 03 Oct 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 02 Oct 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Siyuan
Siyuan siyuan |
|
| Vendors & Products |
Siyuan
Siyuan siyuan |
Fri, 02 Oct 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SiYuan before 3.8.5 contains an information disclosure vulnerability that allows publish readers to read password-protected and publish-disabled database rows via the /api/export/preview endpoint. Attackers can request an export preview of a public document embedding a database view to obtain protected rows' primary-key text and cell values. | |
| Title | SiYuan before 3.8.5 Information Disclosure via /api/export/preview | |
| First Time appeared |
B3log
B3log siyuan |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:b3log:siyuan:*:*:*:*:*:*:*:* | |
| Vendors & Products |
B3log
B3log siyuan |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-10-02T17:38:17.498Z
Reserved: 2026-10-02T00:44:44.528Z
Link: CVE-2026-104410
Updated: 2026-10-02T17:37:58.125Z
Status : Deferred
Published: 2026-10-02T12:17:10.520
Modified: 2026-10-02T18:17:00.790
Link: CVE-2026-104410
No data.
OpenCVE Enrichment
Updated: 2026-10-02T14:15:14Z