Medium severity6.5NVD Advisory· Published Aug 22, 2026
CVE-2026-65915
CVE-2026-65915
Description
NLTK versions before 3.10.0 contain a logic bug in FileSystemPathPointer.open() where the sandbox validation check compares a normalized path against itself, making the security check permanently inert. Attackers can pass file:// URLs to nltk.data.load() to read arbitrary files accessible to the process user, including credentials and configuration files.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.