CVE-2026-33194 | SiYuan up to 3.6.1 kernel/util/path.go IsSensitivePath path traversal (GHSA-vm69-h85x-8p85)
A vulnerability identified as critical has been detected in SiYuan up to 3.6.1. This issue affects the function IsSensitivePath of the file kernel/util/path.go. The manipulation leads to path traversal.
This vulnerability is referenced as CVE-2026-33194. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.