A vulnerability labeled as problematic has been found in siyuan-note SiYuan up to 3.7.3 . Affected is an unknown function of the component NotebookInfo Endpoint . Such manipulation leads to information disclosure. This vulnerability is listed as CVE-2026-72790 . The attack may be performed from remote. There is no available exploit. The affected component should be upgraded.