THREAT OPS › Threat News › [GHSA] GHSA-3mp7-4rh5-jrv9 (high) — SiYuan: Localhost-trust admin bypass on auth-code-gated endpoints, with potential remote reachability via the fixed-port proxy
[GHSA] GHSA-3mp7-4rh5-jrv9 (high) — SiYuan: Localhost-trust admin bypass on auth-code-gated endpoints, with potential remote reachability via the fixed-port proxy
GHSA-3mp7-4rh5-jrv9 Severity: high CVE: CVE-2026-72809
SiYuan: Localhost-trust admin bypass on auth-code-gated endpoints, with potential remote reachability via the fixed-port proxy
**CVE:** This vulnerability corresponds to CVE-2026-72809.
### Summary
The kernel's `CheckAuth` grants `RoleAdministrator` to any request whose `RemoteAddr` is loo
Indicators of compromise
- CVE-2026-72809cve
Original source: https://github.com/advisories/GHSA-3mp7-4rh5-jrv9