Skip to content
NLTKGHSA-mr7p-25v2-35wr

NLTK Vulnerable To Path Traversal

High7.5CVE-2019-14751 · Published Aug 23, 2019 · updated Oct 7, 2024

GitHub advisory

Affected versions

PackageAffectedFixed in
nltk
PyPI
< 3.4.53.4.5
Details and references

More NLTK advisories

All NLTK
DateAdvisory
Sep 292021NLTK Vulnerable to REDoS
CVE-2021-3828High7.5fixed in 3.6.4
Jan 62022Inefficient Regular Expression Complexity in nltk (word_tokenize, sent_tokenize)
CVE-2021-43854High7.5fixed in 3.6.6
Jan 62022NLTK Vulnerable to REDoS
CVE-2021-3842High7.5fixed in 3.6.6
Jun 282024ntlk unsafe deserialization vulnerability
CVE-2024-39705High7.5fixed in 3.9
Feb 18NLTK has a Zip Slip Vulnerability
CVE-2025-14009Critical10.0fixed in 3.9.3
Mar 4NLTK has a Path Traversal issue
CVE-2026-0847High8.6no fix yet

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.