CVE-2026-44512: Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.9.0 before 1.22.0, onnx.version_converter.convert_version() can dereference a null pointer in U...

Added to the CISA Known Exploited Vulnerabilities catalog on 08 Jul 2026. Vendor: AI/ML. Product: machine learning. CVSS score: 5.5.

Open Neural Network Exchange (ONNX) is an open standard for machine learning interoperability. From 1.9.0 before 1.22.0, onnx.version_converter.convert_version() can dereference a null pointer in Upsample_6_7::adapt_upsample_6_7() in onnx/version_converter/adapters/upsample_6_7.h when processing ...

Required action: Review and patch if applicable to your AI infrastructure.