← Vulnerability feed

Vulnerability record · CVE-2024-5187 · published 6 June 2024

CVE-2024-5187: Linuxfoundation onnx path traversal vulnerability

Linuxfoundation · Onnx

A vulnerability in the `download_model_with_test_data` function of the onnx/onnx framework, version 1.16.0, allows for arbitrary file overwrite due to inadequate prevention of path traversal attacks in malicious tar files. This vulnerability enables attackers to overwrite any file on the system, potentially leading to remote code execution, deletion of system, personal, or application files, thus impacting the integrity and availability of the system. The issue arises from the function's handling of tar file extraction without performing security checks on the paths within the tar file, as demonstrated by the ability to overwrite the `/home/kali/.ssh/authorized_keys` file by specifying an absolute path in the malicious tar file.

8.8 CVSS 3.1 High EPSS 1.2% · top 33.6% CWE-22 · Path traversal
8.8CVSS 3.1 base score
1.2%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

A vulnerability in the `download_model_with_test_data` function of the onnx/onnx framework, version 1.16.0, allows for arbitrary file overwrite due to inadequate prevention of path traversal attacks in malicious tar files. This vulnerability enables attackers to overwrite any file on the system, potentially leading to remote code execution, deletion of system, personal, or application files, thus impacting the integrity and availability of the system. The issue arises from the function's handling of tar file extraction without performing security checks on the paths within the tar file, as demonstrated by the ability to overwrite the `/home/kali/.ssh/authorized_keys` file by specifying an absolute path in the malicious tar file.

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://huntr.com/bounties/50235ebd-3410-4ada-b064-1a648e11237e ExploitIssue TrackingThird Party Advisory
https://huntr.com/bounties/50235ebd-3410-4ada-b064-1a648e11237e ExploitIssue TrackingThird Party Advisory

Track CVE-2024-5187 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.1CVE-2026-28500Linuxfoundation onnx insufficient verification of data authenticity vulnerabilityOpen Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. In versions up to and including 1.20.1, a security con…EPSS 0.31%9.1CVE-2024-27319Linuxfoundation onnx out-of-bounds read vulnerabilityVersions of the package onnx before and including 1.15.0 are vulnerable to Out-of-bounds Read as the ONNX_ASSERT and ONNX_ASSERTM functions have an o…EPSS 0.59%8.8CVE-2025-51480Linuxfoundation onnx path traversal vulnerabilityPath Traversal vulnerability in onnx.external_data_helper.save_external_data in ONNX 1.17.0 allows attackers to overwrite arbitrary files by supplyin…EPSS 0.60%8.7CVE-2026-27489Linuxfoundation onnx relative path traversal vulnerabilityOpen Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, a path traversal vulnerabilit…EPSS 0.62%8.6CVE-2026-34445Linuxfoundation onnx improper input validation vulnerabilityOpen Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. Prior to version 1.21.0, the ExternalDataInfo class in…EPSS 0.51%7.5CVE-2024-27318Linuxfoundation onnx path traversal vulnerabilityVersions of the package onnx before and including 1.15.0 are vulnerable to Directory Traversal as the external_data field of the tensor proto can hav…EPSS 1.2%7.5CVE-2022-25882Linuxfoundation onnx path traversal vulnerabilityVersions of the package onnx before 1.13.0 are vulnerable to Directory Traversal as the external_data field of the tensor proto can have a path to th…EPSS 1.6%6.8CVE-2026-49114Linuxfoundation onnx path traversal vulnerabilityIn ONNX before 1.21.0, the 'save_external_data' function builds the external-data file path from the model's external_data location field and opens i…EPSS 0.16%

Source: NIST National Vulnerability Database (record CVE-2024-5187), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.