CVE-2019-10844: Sony Neural Network Libraries

Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.

nbla/logger.cpp in libnnabla.a in Sony Neural Network Libraries (aka nnabla) through v1.0.14 relies on the HOME environment variable, which might be untrusted.

Affected products

  • Sony Neural Network Libraries: up to and including 1.0.14

Published 2019-04-04. Last modified 2026-06-17.