nltk/nltk
nltk- Product type
- Other
- Catalog vulnerabilities
- 12
Severity across 11 analyzed records
Verify to analyze this security profile
en
As of 09/19/2026, within CyStack's analyzed data, nltk/nltk has 4 security vulnerabilities published in the last 90 days. Of these, 1 is rated High or Critical. None of these vulnerabilities is listed in the CISA KEV catalog. CyStack recommends that organizations and individual users remediate applicable vulnerabilities as soon as possible.
CyStack does not yet have sufficient official-source data to identify the latest version of nltk/nltk and determine which vulnerabilities affect that version.
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan| Vulnerability | Exploitation status | Fix | Published | Severity |
|---|---|---|---|---|
CVE-2026-12372Server-Side Request Forgery (SSRF) in nltk/nltk | Exploitation statusPublic exploit | FixNot confirmed | Published08/09/2026 | SeverityLow |
CVE-2026-12261Improper Access Control in nltk/nltk | Exploitation statusPublic exploit | FixNot confirmed | Published08/07/2026 | SeverityMedium |
CVE-2026-12259Improper Input Validation in nltk/nltk | Exploitation statusNot known exploited | FixNot confirmed | Published08/03/2026 | SeverityMedium |
CVE-2026-12252Untrusted JAR Code Execution in Multiple Stanford Interface Classes in nltk/nltk | Exploitation statusPublic exploit | FixNot confirmed | Published07/04/2026 | SeverityHigh |
CVE-2026-12243 | Exploitation statusNot confirmed | FixNot confirmed | Published06/30/2026 | SeverityUnknown |
CVE-2026-12199Unauthenticated Denial of Service in nltk.app.wordnet_app | Exploitation statusPublic exploit | FixNot confirmed | Published06/17/2026 | SeverityHigh |
CVE-2026-0846Arbitrary File Read via Absolute Path Input in nltk.util.filestring() | Exploitation statusPublic exploit | FixNot confirmed | Published03/09/2026 | SeverityHigh |
CVE-2026-0848Arbitrary Code Execution in NLTK StanfordSegmenter via Untrusted JAR Loading | Exploitation statusPublic exploit | FixNot confirmed | Published03/05/2026 | SeverityCritical |
CVE-2026-0847Path Traversal in nltk/nltk | Exploitation statusPublic exploit | FixNot confirmed | Published03/04/2026 | SeverityHigh |
CVE-2025-14009Zip Slip Vulnerability in nltk/nltk Leading to Remote Code Execution | Exploitation statusPublic exploit | FixNot confirmed | Published02/18/2026 | SeverityCritical |
CVE-2021-3842Inefficient Regular Expression Complexity in nltk/nltk | Exploitation statusNot confirmed | FixYes | Published01/04/2022 | SeverityHigh |
CVE-2021-3828Inefficient Regular Expression Complexity in nltk/nltk | Exploitation statusNot confirmed | FixNot confirmed | Published09/27/2021 | SeverityHigh |