PT-2026-29579 · Onnx · Onnx

Zeroxjacks

·

Published

2026-04-01

·

Updated

2026-04-09

·

CVE-2026-34446

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions ONNX versions prior to 1.21.0
Description The Open Neural Network Exchange (ONNX) has an issue in the onnx.load function where the code checks for symbolic links to prevent path traversal but fails to account for hard links, as hard links appear as regular files on the filesystem. The validator in onnx/checker.cc only uses is symlink() and does not check the inode or st nlink, allowing hard links to bypass security checks. This could be particularly dangerous in AI supply chain scenarios.
Recommendations Update to version 1.21.0 or later.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-34446
ECHO-76FB-F78F-1FBE
GHSA-CMW6-HCPP-C6JP

Affected Products

Onnx