Loading
Open Neural Network Exchange
Does not declare an LLM SDK itself, but depends on a package that does, 5 steps away.
Advisories that name onnx as affected. Advisory records do not state an ecosystem, so packages with the same name in other ecosystems also match. For a version-exact check of your own dependencies, use Stack Check.
| Advisory | Severity | Affected | Fixed in | Published |
|---|---|---|---|---|
| CVE-2026-44512GHSA-hwpq-hmq9-wj77: ONNX has Null Pointer Dereference in Upsample Version Converter Adapter (Zero Inputs) | Medium | >= 1.9.0, < 1.22.0 | 1.22.0 | 2026-07-07 |
| GHSA-q56x-g2fj-4rj6: ONNX: TOCTOU arbitrary file read/write in save_external_dat | High | <= 1.20.1 | 1.21.0 | 2026-04-01 |
| CVE-2026-28500GHSA-hqmj-h5c6-369m: ONNX Untrusted Model Repository Warnings Suppressed by silent=True in onnx.hub.load() — Silent Supply-Chain Attack | High | <= 1.20.1 | 2026-03-16 |
Shortest path through the runtime dependencies of each latest release.
As declared in PyPI metadata for version 1.23.2. Optional extras are listed with their extra name.
Among the packages in the registry; not every dependent on PyPI.