CVE-2024-36736: Oneflow

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

An issue in the oneflow.permute component of OneFlow-Inc. Oneflow v0.9.1 causes an incorrect calculation when the same dimension operation is performed.

Affected products

  • Oneflow Oneflow: version 0.9.1 only

Published 2024-06-06. Last modified 2026-06-17.