High severityNVD Advisory· Published Jun 30, 2026· Updated Aug 18, 2026
CVE-2026-12243
CVE-2026-12243
Description
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
nltkPyPI | < 3.10.0 | 3.10.0 |
Affected products
8- osv-coords8 versionspkg:apk/chainguard/py3-nltkpkg:apk/chainguard/py3.11-nltkpkg:apk/chainguard/py3.12-nltkpkg:apk/chainguard/py3.13-nltkpkg:apk/wolfi/py3-nltkpkg:apk/wolfi/py3.11-nltkpkg:apk/wolfi/py3.12-nltkpkg:apk/wolfi/py3.13-nltk
< 3.10.0-r0+ 7 more
- (no CPE)range: < 3.10.0-r0
- (no CPE)range: < 3.10.0-r0
- (no CPE)range: < 3.10.0-r0
- (no CPE)range: < 3.10.0-r0
- (no CPE)range: < 3.10.0-r0
- (no CPE)range: < 3.10.0-r0
- (no CPE)range: < 3.10.0-r0
- (no CPE)range: < 3.10.0-r0
Patches
Vulnerability mechanics
References
9- github.com/advisories/GHSA-m42h-3232-vpv3ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2026-12243ghsaADVISORY
- github.com/nltk/nltk/commit/aec4fce1b84ad725b8975f7365b23a4f626572a9ghsaWEB
- github.com/nltk/nltk/issues/3504ghsaWEB
- github.com/nltk/nltk/pull/3522ghsaWEB
- github.com/nltk/nltk/security/advisories/GHSA-m42h-3232-vpv3ghsaWEB
- github.com/pypa/advisory-database/tree/main/vulns/nltk/PYSEC-2026-597.yamlghsaWEB
- huntr.com/bounties/39aa9354-54ca-4e77-96da-580eb1fe6ed1ghsaWEB
- securityinfinity.com/research/path-traversal-in-nltks-nltk-data-load-via-percent-encoded-sequencesghsaWEB
News mentions
0No linked articles in our index yet.