CVE-2026-27489
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, a path traversal vulnerability via symlink allows to read arbitrary files outside model or user-provided directory. This issue has been patched in version 1.21.0.
Vendor
Product
CWE
Yayın Tarihi
2026-04-01 18:16:28
Güncelleme
2026-04-07 20:22:04
Source Identifier
security-advisories@github.com
KEV Date Added
-