Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 08 Jun 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Jun 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in onnx onnx-mlir up to 0.5.0.0. Affected by this issue is the function generate_hash_key of the file src/Runtime/python/torch_onnxmlir/src/torch_onnxmlir/backend.py of the component Placeholder Node Cache Handler. Such manipulation leads to use of weak hash. An attack has to be approached locally. A high complexity level is associated with this attack. The exploitation is known to be difficult. The name of the patch is 72c5187ff6d13c2c2b3d3789b8f5faf99f08a5b4. Applying a patch is advised to resolve this issue. | |
| Title | onnx onnx-mlir Placeholder Node Cache backend.py generate_hash_key weak hash | |
| First Time appeared |
Onnx
Onnx onnx-mlir |
|
| Weaknesses | CWE-327 CWE-328 |
|
| CPEs | cpe:2.3:a:onnx:onnx-mlir:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Onnx
Onnx onnx-mlir |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-08T17:03:42.507Z
Reserved: 2026-06-05T06:43:25.150Z
Link: CVE-2026-11329
Updated: 2026-06-08T17:03:08.344Z
Status : Deferred
Published: 2026-06-05T13:16:38.343
Modified: 2026-06-05T13:26:42.027
Link: CVE-2026-11329
No data.
OpenCVE Enrichment
Updated: 2026-06-05T15:15:26Z