CVE-2026-27489
onnx onnx, Red Hat OpenShift AI 2.25, Red Hat OpenShift AI (RHOAI) 취약점
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, a path traversal vulnerability via symlink allows to read arbitrary files outside model or user-provided directory. This issue has been patched in version 1.21.0.
- 대응 우선순위
- 점검
- CVSS
- 8.7
- EPSS
- 0.59% 백분위 45.0% · 2026.08.03 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.04.02