A vulnerability described as problematic has been identified in SiYuan-Note SiYuan up to 3.7.3. This issue affects the function
getFullHPathByID/getHPathByID/getPathByID/getIDsByHPath/getHPathByPath of the component Filetree Path-Resolution. The manipulation results in improper access controls.
This vulnerability is cataloged as CVE-2026-72799. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.