CVE-2026-81726: Nltk

High severity, CVSS 7.0. EPSS: 0.3% chance of exploitation in the next 30 days.

NLTK through 3.10.3 contains a path traversal vulnerability in model-artifact APIs that bypass pathsec enforcement by using raw file operations on caller-controlled paths. Attackers can read or write files outside allowed sandbox roots through TransitionParser, AveragedPerceptron, PerceptronTagger, and maxent parameter APIs when pathsec is enabled.

Affected products

  • Nltk Nltk: before 3.10.3 (fixed in 3.10.3)

Published 2026-08-27. Last modified 2026-08-31.