White Rabbitx 🏴☠️[verified]@TheRabbitPyPatch
CVE‑2026‑27489 enables path traversal via symlinks in ONNX, permitting arbitrary file access, and a patch is available in the latest ONNX release.
SecDim@secdimDisclosure
The post discloses a zero‑day path traversal (CVE‑2026‑27489) in ONNX, summarizes that three patches were issued, and provides analysis of the vulnerability’s persistence and mitigation. It serves as a detailed disclosure rather than implying active exploitation.
CVE@CVEnewDisclosure
The post announces a path‑traversal vulnerability in ONNX prior to version 1.21.0, with no PoC, exploit, or patch details provided.
Infoflowcloud@infoflowcloudDisclosure
The post announces CVE-2026-27489, a path traversal flaw in ONNX before version 1.21.0, linking to the CVE record but providing no PoC, exploit, patch, or evidence of active exploitation.