PT-2026-76604 · Siyuan · Siyuan

·

CVE-2026-74868

·

Published

2026-08-17

·

Updated

2026-08-17

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions SiYuan versions prior to 3.7.4
Description The Publish Service Basic Auth implementation contains a flaw that allows unthrottled brute-force attacks. The service operates on a separate listener, typically TCP port 6808, which is unauthenticated by default. It uses Basic Auth to protect Conf.Publish.Auth.Accounts (publish-viewer accounts) but lacks rate limiting, per-account lockout, or backoff mechanisms. This allows unauthenticated remote attackers to perform unlimited password guesses against these accounts to gain unauthorized access to published notes and notebooks via the PublishServiceTransport.RoundTrip() function.
Recommendations Update to version 3.7.4 or later.

Exploit

Fix

Improper Restriction of Excessive Authentication Attempts

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-74868

Affected Products

Siyuan