A vulnerability labeled as critical has been found in nltk up to 3.9.4. The affected element is the function nltk.downloader of the component Downloader. Such manipulation leads to code injection.
This vulnerability is uniquely identified as CVE-2026-12261. The attack can be launched remotely. No exploit exists.
🕵️ Sicherheitslücken
⚡ iShareStuff Intelligence
📰 VERIFIED NEWS INTELLIGENCE ID: #3682929
🛡️ CVE-2026-12261 | nltk up to 3.9.4 Downloader nltk.downloader code injection (Nessus ID 333363)
⏱️ vor 20h 13m (08.08.2026 um 03:34 Uhr) 📖 1 Min. Lesezeit 📂 🕵️ Sicherheitslücken 📡 Feed 🔗 Quelle: vuldb.com
Schrift: