Vulnerabilidades em nltk
44 resultadosAnálise Vexday
A biblioteca NLTK apresenta 14 vulnerabilidades registradas, com 4 publicadas nos últimos 90 dias, indicando risco recente e continuado; nenhuma está sob exploração ativa conhecida, mas a fraqueza dominante (CWE-22: Path Traversal) sugere potencial para contaminação de dados ou acesso não autorizado. Com apenas 1 vulnerabilidade crítica, o risco é moderado, porém demanda atenção à atualização contínua dado o padrão de novas descobertas.
CVE-2026-66393HIGHNLTK before 3.9.4 Denial of Service via JSONTaggedDecoderEPSS 0.4%CVE-2026-65915HIGHNLTK before 3.10.0 Arbitrary File Read via FileSystemPathPointerEPSS 0.4%CVE-2026-33230MEDIUMnltk Vulnerable to Cross-site ScriptingEPSS 0.3%CVE-2026-12199HIGHUnauthenticated Denial of Service in nltk.app.wordnet_appEPSS 0.3%CVE-2026-79676HIGHNLTK before 3.10.3 Path Traversal via Symlink BypassEPSS 0.3%CVE-2026-78681HIGHNLTK before 3.10.3 Entity Expansion DoS via ElementTreeEPSS 0.3%CVE-2026-78683CRITICALNLTK before 3.10.0 Remote Code Execution via Unsafe Pickle DeserializationEPSS 0.3%CVE-2026-81724MEDIUMNLTK before 3.10.3 Denial of Service via Uncontrolled RecursionEPSS 0.3%CVE-2026-80206HIGHNLTK 3.10.2 Regular Expression Denial of Service via tgrepEPSS 0.3%CVE-2026-81726HIGHNLTK through 3.10.3 Path Traversal via Model-Artifact APIsEPSS 0.3%CVE-2026-12372LOWServer-Side Request Forgery (SSRF) in nltk/nltkEPSS 0.3%CVE-2026-78682HIGHNLTK before 3.10.3 SSRF Protection Bypass via ProxyEPSS 0.3%CVE-2026-63311MEDIUMNLTK before 3.10.0 SSRF via DNS Resolution FailureEPSS 0.2%CVE-2026-12252HIGHUntrusted JAR Code Execution in Multiple Stanford Interface Classes in nltk/nltkEPSS 0.2%CVE-2026-81725MEDIUMNLTK before 3.10.3 Regular Expression Denial of Service via Pl196xCorpusReaderEPSS 0.2%CVE-2026-79674HIGHNLTK 3.10.2 Path Traversal via corpus-reader constructorsEPSS 0.2%CVE-2026-81723MEDIUMNLTK before 3.10.3 Quadratic CPU Exhaustion via XMLCorpusViewEPSS 0.2%CVE-2026-12261MEDIUMImproper Access Control in nltk/nltkEPSS 0.2%CVE-2026-70626HIGHNLTK before 3.9.4 Symlink Escape via CorpusReaderEPSS 0.2%CVE-2026-62383MEDIUMnltk IPIPANCorpusReader Symlink Arbitrary File ReadEPSS 0.2%