Vendor
high
advisory
NLTK Corpus Reader Path Traversal via Symlink Bypass
1 TTP 1 CVENLTK corpus readers in versions 3.10.2 and earlier fail to enforce path security boundaries when processing symlinks, allowing attackers to disclose files outside of the trusted corpus root.
NLTK
1t
1c
high
advisory
NLTK TweetTokenizer Regular Expression Denial of Service
2 TTPs 1 CVEThe NLTK library's TweetTokenizer is vulnerable to a ReDoS attack due to an unbounded regular expression, allowing unauthenticated attackers to trigger CPU exhaustion.
NLTK +1
vulnerability
file-system
python
2t
1c
updated