PT-2026-81355 · Pypi · Nltk

·

CVE-2026-79674

·

Published

2026-08-11

·

Updated

2026-09-08

CVSS v4.0

8.8

High

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions NLTK versions prior to 3.10.3
Description A path sandbox bypass exists in corpus-reader constructors, enabling attackers to read files outside the intended data root. By supplying arbitrary corpus root paths to the LinThesaurusCorpusReader and PanLexLiteCorpusReader constructors, attackers can access filesystem content and SQLite databases beyond the pathsec sandbox boundary.
Recommendations Update to version 3.10.3 or later.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-12782
CVE-2026-79674
GHSA-3GQ4-3J92-5W49
GHSA-RCW8-9QRW-27M2
PYSEC-2026-3736

Affected Products

Nltk