CVE-2026-55832 | Sonos tract up to 0.21.16/0.22.2/0.23.1 External Data Path Resolution onnx/src/tensor.rs get_external_resources offset/length path traversal

SecurityVulns

A vulnerability was found in Sonos tract up to 0.21.16/0.22.2/0.23.1. It has been rated as problematic. This affects the function get_external_resources of the file onnx/src/tensor.rs of the component External Data Path Resolution. This manipulation of the argument offset/length causes path traversal.

The identification of this vulnerability is CVE-2026-55832. The attack can only be executed locally. There is no exploit available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More