Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-55570: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in siyuan-note siyuanCVE-2026-55570 0 SiYuan, an open-source personal knowledge management system, has a critical cross-site scripting (XSS) vulnerability in versions prior to 3.7.0. The vulnerability arises because untrusted fields (name, version, author, description) are not properly escaped when serialized into an HTML attribute, allowing injection of arbitrary HTML. In the desktop client, this XSS can escalate to arbitrary OS command execution due to the application's nodeIntegration and contextIsolation settings. This vulnerability is fixed in version 3.7.0. Join the discussion | CVE Database V5 | 06/24/2026, 21:24:21 UTC Added: 06/24/2026, 21:46:06 UTC |
CVE-2026-54759: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in siyuan-note siyuanCVE-2026-54759 0 SiYuan, an open-source personal knowledge management system, has a cross-site scripting (XSS) vulnerability in versions prior to 3.7.0. The vulnerability arises because Lute's HTML sanitizer does not remove <iframe> elements, and combined with the Electron client's permissive security settings, this allows an attacker to embed a malicious <iframe> in a Bazaar package README. Viewing the package details can lead to arbitrary command execution on the victim's machine without requiring package installation. This issue is fixed in version 3.7.0. Join the discussion | CVE Database V5 | 06/24/2026, 21:21:57 UTC Added: 06/24/2026, 21:46:06 UTC |
CVE-2026-54158: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in siyuan-note siyuanCVE-2026-54158 0 SiYuan, an open-source personal knowledge management system, has a critical cross-site scripting (XSS) vulnerability in versions prior to 3.7.0. The vulnerability occurs in the attribute-view cell renderer which improperly interpolates raw cell content in certain branches, allowing malicious input to execute arbitrary JavaScript. On the Electron desktop client with nodeIntegration enabled, this XSS can escalate to remote code execution (RCE). The issue is fixed in version 3.7.0. Join the discussion | CVE Database V5 | 06/24/2026, 21:19:16 UTC Added: 06/24/2026, 21:46:06 UTC |
CVE-2026-54070: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in siyuan-note siyuanCVE-2026-54070 0 SiYuan versions prior to 3.7.0 contain a cross-site scripting (XSS) vulnerability in the rendering of Bazaar package README files. The vulnerability arises because the Markdown-to-HTML renderer uses a sanitizer that fails to block certain modern event handler attributes, allowing malicious JavaScript to execute in the Administrator's browser when viewing package listings. This can lead to full control of the workspace by an attacker. The issue is fixed in version 3.7.0. Join the discussion | CVE Database V5 | 06/24/2026, 21:18:24 UTC Added: 06/24/2026, 21:46:06 UTC |
CVE-2026-54069: CWE-346: Origin Validation Error in siyuan-note siyuanCVE-2026-54069 0 SiYuan Note versions prior to 3.7.0 have an origin validation vulnerability in their kernel HTTP server. The server trusts all chrome-extension:// origins without authentication, granting RoleAdministrator access to any installed Chrome/Chromium extension. This allows extensions, including compromised ones, to make authenticated admin API calls to the local SiYuan kernel, potentially leading to data exfiltration, stored XSS injection, and configuration tampering. The vulnerability is fixed in version 3.7.0. Join the discussion | CVE Database V5 | 06/24/2026, 21:17:02 UTC Added: 06/24/2026, 21:46:06 UTC |
CVE-2026-54068: CWE-306: Missing Authentication for Critical Function in siyuan-note siyuanCVE-2026-54068 0 SiYuan versions prior to 3.7.0 have a vulnerability in the /api/icon/getDynamicIcon endpoint, which is excluded from authentication. This allows unauthenticated attackers who know a valid block ID to execute arbitrary SELECT queries on the SQLite database, potentially exposing all user note content and metadata. The issue is fixed in version 3.7.0. Join the discussion | CVE Database V5 | 06/24/2026, 21:15:14 UTC Added: 06/24/2026, 21:46:06 UTC |
CVE-2026-54067: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in siyuan-note siyuanCVE-2026-54067 0 A critical cross-site scripting (XSS) vulnerability exists in SiYuan, an open-source personal knowledge management system, prior to version 3.7.0. The issue arises when CSS snippets containing </style> break out of their style tags during rendering, allowing arbitrary JavaScript execution. On Electron desktop builds with nodeIntegration enabled, this XSS can escalate to remote code execution (RCE) on the host. The vulnerability bypasses user settings that disable JavaScript execution, as the CSS path still runs injected scripts. An attacker with write access to any synced workspace can plant a payload that executes on all devices pulling that workspace. This vulnerability is fixed in version 3.7.0. Join the discussion | CVE Database V5 | 06/24/2026, 21:14:38 UTC Added: 06/24/2026, 21:46:06 UTC |
CVE-2026-54066: CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in siyuan-note siyuanCVE-2026-54066 0 SiYuan, an open-source personal knowledge management system, has a path traversal vulnerability (CVE-2026-54066) affecting versions prior to 3.7.0. The issue allows unauthenticated remote attackers to read arbitrary files within the WorkspaceDir via double URL encoding in the /assets/*path route when the system is in publish mode. Sensitive files such as configuration files containing authentication tokens and logs can be accessed. This vulnerability was fixed in version 3.7.0. Join the discussion | CVE Database V5 | 06/24/2026, 21:13:25 UTC Added: 06/24/2026, 21:46:05 UTC |
CVE-2026-50551: CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in siyuan-note siyuanCVE-2026-50551 0 SiYuan, an open-source personal knowledge management system, has a critical stored cross-site scripting (XSS) vulnerability in the Attribute View asset cell renderer prior to version 3.7.0. This vulnerability can escalate to remote code execution (RCE) in the Electron desktop client. The issue is fixed in version 3.7.0. Join the discussion | CVE Database V5 | 06/24/2026, 21:20:42 UTC Added: 06/24/2026, 21:46:05 UTC |
Showing 1 to 9 of 9 results