Skip to content

Instantly share code, notes, and snippets.

Show Gist options
  • Save Redmept1on/1c530e191fb3c76f034c2ea1d11eb821 to your computer and use it in GitHub Desktop.
Save Redmept1on/1c530e191fb3c76f034c2ea1d11eb821 to your computer and use it in GitHub Desktop.
[CVE ID]
CVE-2024-36730
[Affected Component]
OneFlow API: oneflow.new_ones
[VERSION]
v0.9.1
[VulnerabilityType Other]
CWE-20: Improper Input Validation
[DESCRIPTION]
Improper input validation in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) via inputting negative values into the oneflow.zeros/ones parameter.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment