CPE
low
advisory
ReDoS Vulnerability in NLTK TokenSearcher and Text findall Methods
1 TTP 1 CVEThe NLTK library is vulnerable to Regular Expression Denial of Service (ReDoS) due to unvalidated user-supplied regular expressions being processed without timeouts, allowing CPU exhaustion.
nltk
denial-of-service
redos
application-vulnerability
1t
1c
high
advisory
NLTK Corpus Reader Path Traversal via Symlink Bypass
1 TTP 1 CVENLTK corpus readers in versions 3.10.2 and earlier fail to enforce path security boundaries when processing symlinks, allowing attackers to disclose files outside of the trusted corpus root.
NLTK
1t
1c