← All vendors

nltk

31 known vulnerabilities affecting nltk products.

Products

nltk 31

Vulnerabilities by priority

CVEPriorityEPSSCVSSKEVWhat
CVE-2026-79657 High 1.2% 9.8 NLTK versions before 3.10.3 contain a remote code execution vulnerability in all…
CVE-2026-79675 High 0.4% 9.8 NLTK before 3.10.3 fails to validate JVM options passed through the per-call opt…
CVE-2026-78683 High 0.3% 9.6 NLTK before 3.10.0 (affected versions <=3.9.4) contains an unsafe pickle deseria…
CVE-2026-33231 Medium 1.2% 7.5 NLTK (Natural Language Toolkit) is a suite of open source Python modules, data s…
CVE-2026-71513 Medium 0.8% 8.8 NLTK before 3.10.3 contains a remote code execution vulnerability in AllowlistUn…
CVE-2026-54293 Medium 0.6% 7.5 NLTK (Natural Language Toolkit) is a suite of open source Python modules, data s…
CVE-2026-33236 Medium 0.6% 8.1 NLTK (Natural Language Toolkit) is a suite of open source Python modules, data s…
CVE-2026-62384 Medium 0.6% 7.5 NLTK versions before 3.10.2 contain a symlink-based sandbox bypass in FramenetCo…
CVE-2026-63312 Medium 0.6% 7.5 NLTK before 3.10.0 contains an arbitrary local file read vulnerability in Stream…
CVE-2026-80205 Medium 0.5% 7.5 NLTK versions before 3.10.0 contain a regular expression denial of service vulne…
CVE-2026-62388 Medium 0.5% 7.5 NLTK versions before 3.10.0 default to ENFORCE=False in pathsec.py, causing all …
CVE-2026-66393 Medium 0.4% 7.5 NLTK versions before 3.9.4 contain an unbounded recursion vulnerability in JSONT…
CVE-2026-81722 Medium 0.4% 7.5 nltk PorterStemmer in versions <= 3.10.2 (fixed in 3.10.3) contains an inefficie…
CVE-2026-78681 Medium 0.3% 7.5 NLTK versions before 3.10.3 use xml.etree.ElementTree to parse XML in multiple m…
CVE-2026-81726 Medium 0.3% 7.0 NLTK through 3.10.3 contains a path traversal vulnerability in model-artifact AP…
CVE-2026-78682 Medium 0.3% 7.5 NLTK before 3.10.3 contains a server-side request forgery vulnerability in nltk.…
CVE-2026-79674 Medium 0.2% 8.2 NLTK versions before 3.10.3 contain a path sandbox bypass vulnerability in corpu…
CVE-2025-71408 Medium 0.2% 7.8 NLTK (Natural Language Toolkit) before version 3.9.3 contains an eval injection …
CVE-2026-81727 Medium 0.1% 7.1 NLTK versions before 3.10.3 contain a filesystem containment bypass vulnerabilit…
CVE-2026-62385 Low 0.4% 5.9 NLTK versions before 3.10.0 contain a path traversal vulnerability in FramenetCo…
CVE-2026-65915 Low 0.4% 6.5 NLTK versions before 3.10.0 contain a logic bug in FileSystemPathPointer.open() …
CVE-2026-79676 Low 0.3% 5.9 NLTK versions before 3.10.3 contain a path traversal vulnerability in corpus rea…
CVE-2026-81724 Low 0.3% 5.3 NLTK before 3.10.3 contains an uncontrolled recursion vulnerability in nltk.feat…
CVE-2026-80206 Low 0.3% 5.9 NLTK before 3.10.3 contains a regular expression denial of service (ReDoS) vulne…
CVE-2026-12372 Low 0.3% 3.7 A Server-Side Request Forgery (SSRF) vulnerability exists in nltk/nltk versions …
CVE-2026-63311 Low 0.2% 5.3 NLTK before 3.10.0 (affected versions <= 3.9.4) contains a server-side request f…
CVE-2026-81725 Low 0.2% 3.7 NLTK before 3.10.3 contains a regular expression denial of service vulnerability…
CVE-2026-12261 Low 0.2% 6.5 A vulnerability in `nltk.downloader` in nltk/nltk versions <= 3.9.4 allows for c…
CVE-2026-70626 Low 0.2% 6.2 NLTK versions before 3.9.4 contain a symlink escape vulnerability in CorpusReade…
CVE-2026-62383 Low 0.2% 5.5 nltk versions before 3.10.2 contain a symlink-based arbitrary file read vulnerab…
CVE-2026-71514 Low 0.2% 2.5 NLTK 3.9.4 through 3.10.2 contains a path traversal vulnerability in CrubadanCor…