Medium severity5.5OSV Advisory· Published Jul 8, 2026· Updated Jul 13, 2026
CVE-2026-44512
CVE-2026-44512
Description
Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.9.0 before 1.22.0, onnx.version_converter.convert_version() can dereference a null pointer in Upsample_6_7::adapt_upsample_6_7() in onnx/version_converter/adapters/upsample_6_7.h when processing an untrusted model with an Upsample node that has zero inputs, causing an unrecoverable denial of service. This issue is fixed in version 1.22.0.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
onnxPyPI | >= 1.9.0, < 1.22.0 | 1.22.0 |
Affected products
4Patches
Vulnerability mechanics
References
6- github.com/onnx/onnx/commit/cd310408165ad47c3cd7eb2b86cb5b80aa2e4fdfnvdPatch
- github.com/onnx/onnx/pull/7813nvdIssue TrackingPatch
- github.com/onnx/onnx/security/advisories/GHSA-hwpq-hmq9-wj77nvdExploitVendor AdvisoryWEB
- github.com/advisories/GHSA-hwpq-hmq9-wj77ghsaADVISORY
- github.com/onnx/onnx/pull/7916ghsaWEB
- github.com/onnx/onnx/releases/tag/v1.22.0nvdProductRelease NotesWEB
News mentions
0No linked articles in our index yet.