CVE-2026-34446

EUVD-2026-17987
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, there is an issue in onnx.load, the code checks for symlinks to prevent path traversal, but completely misses hardlinks because a hardlink looks exactly like a regular file on the filesystem. This issue has been patched in version 1.21.0.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.7 MEDIUM
LOCAL
HIGH
NONE
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 7.35%
Affected Products (NVD)
VendorProductVersion
linuxfoundationonnx
𝑥
< 1.21.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
onnx
bookworm
no-dsa
bullseye
postponed
forky
vulnerable
sid
vulnerable
trixie
no-dsa
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
onnx
jammy
needed
noble
needed
questing
ignored
resolute
needed
Azure Linux logo
Azure Linux Releases
Azure Package
Release
pytorch
Azure Linux 3.0
0:2.2.2-14.azl3
fixed