THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-3mp7-4rh5-jrv9 (high) — SiYuan: Localhost-trust admin bypass on auth-code-gated endpoints, with potential remote reachability via the fixed-port proxy

[GHSA] GHSA-3mp7-4rh5-jrv9 (high) — SiYuan: Localhost-trust admin bypass on auth-code-gated endpoints, with potential remote reachability via the fixed-port proxy

medgithub_advisoriesPublished 2026-09-03

GHSA-3mp7-4rh5-jrv9 Severity: high CVE: CVE-2026-72809

SiYuan: Localhost-trust admin bypass on auth-code-gated endpoints, with potential remote reachability via the fixed-port proxy

**CVE:** This vulnerability corresponds to CVE-2026-72809.

### Summary

The kernel's `CheckAuth` grants `RoleAdministrator` to any request whose `RemoteAddr` is loo

Indicators of compromise

Original source: https://github.com/advisories/GHSA-3mp7-4rh5-jrv9