Skip to content
ONNXGHSA-h8wv-9h96-m4hr

Onnx Out-of-bounds Read vulnerability

Medium4.4CVE-2024-27319 · Published Feb 23, 2024 · updated Sep 10, 2026

GitHub advisory

Affected versions

PackageAffectedFixed in
onnx
PyPI
< 1.16.01.16.0
Details and references

Versions of the package onnx before and including 1.15.0 are vulnerable to Out-of-bounds Read as the ONNX_ASSERT and ONNX_ASSERTM functions have an off by one string copy.

CVSS 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L
Severity from
GitHub (reviewed advisory)
Weakness
CWE-125
Also known as
CVE-2024-27319, PYSEC-2024-223

More ONNX advisories

All ONNX
DateAdvisory
Feb 232024Onnx Directory Traversal vulnerability
CVE-2024-27318High7.5fixed in 1.16.0
Jun 62024onnx allows Arbitrary File Overwrite in download_model_with_test_data
CVE-2024-5187High8.8fixed in 1.16.2
Mar 202025Open Neural Network Exchange (ONNX) Path Traversal Vulnerability
CVE-2024-7776High8.1fixed in 1.17.0
Jan 262023Directory Traversal in onnx
CVE-2022-25882High7.5fixed in 1.13.0
Mar 16ONNX Untrusted Model Repository Warnings Suppressed by silent=True in onnx.hub.load() , Silent Supply-Chain Attack
CVE-2026-28500High8.6fixed in 1.21.0rc1
Mar 31onnx Vulnerable to Path Traversal via Symlink
CVE-2026-27489Highfixed in 1.21.0

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.