THREAT OPS › Threat News › [GHSA] GHSA-v684-q882-jgmq (high) — SiYuan: The publish-access gate treats encrypted notebooks as publicly accessible by default, allowing anonymous readers to retrieve fully decrypted document content while a notebook is unlocked
[GHSA] GHSA-v684-q882-jgmq (high) — SiYuan: The publish-access gate treats encrypted notebooks as publicly accessible by default, allowing anonymous readers to retrieve fully decrypted document content while a notebook is unlocked
GHSA-v684-q882-jgmq Severity: high CVE: CVE-2026-72789
SiYuan: The publish-access gate treats encrypted notebooks as publicly accessible by default, allowing anonymous readers to retrieve fully decrypted document content while a notebook is unlocked
**CVE:** This vulnerability corresponds to CVE-2026-72789.
### Summary
`publishAccess.json` is
Indicators of compromise
- CVE-2026-72789cve
- http://127.0.0.1:6808/api/notebook/lsNotebooksurl
- http://127.0.0.1:6808/api/filetree/listDocsByPathurl
- http://127.0.0.1:6808/api/filetree/getDocurl
Original source: https://github.com/advisories/GHSA-v684-q882-jgmq