CVE-2026-54293
nltk nltk, Red Hat OpenShift AI 2.25, Exploit Intelligence
NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting research and development in Natural Language Processing. Prior to 3.10.0-rc1, nltk.data.load() in NLTK is vulnerable to path traversal via URL-encoded path separators and traversal segments when using the nltk: URL scheme. The unsafe-path regex check is performed before url2pathname() decodes the %xx sequences (a classic decode-after-check / TOCTOU-style flaw), allowing an attacker to bypass the protection documented in NLTK's SECURITY.md and read arbitrary files from the filesystem...
- CVSS
- 7.5
- EPSS
- 0.56% 43.0% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.23