Oneflow · Oneflow · CVE-2025-63397
**Name of the Vulnerable Software and Affected Versions**
OneFlow version 0.9.0
**Description**
A flaw exists in input validation within OneFlow version 0.9.0. This issue allows attackers to trigger a segmentation fault by adding a Python sequence to native code during broadcasting or type conversion. The issue occurs due to insufficient checks on user-supplied input.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.