High severity8.8NVD Advisory· Published Aug 22, 2026· Updated Sep 16, 2026
CVE-2026-71513
CVE-2026-71513
Description
NLTK before 3.10.3 contains a remote code execution vulnerability in AllowlistUnpickler that validates only the pickle module string and not the global name, allowing attackers to resolve dotted names by attribute traversal to callables outside the allowlisted namespace. Attackers can craft untrusted transition-parser models that execute arbitrary commands when TransitionParser.parse loads the model through allowlisted_pickle_load.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
nltkPyPI | >= 3.10.0, < 3.10.3 | 3.10.3 |
Affected products
5- osv-coords4 versionspkg:rpm/opensuse/python-nltk&distro=openSUSE%20Tumbleweedpkg:apk/chainguard/nemopkg:apk/chainguard/open-webuipkg:apk/wolfi/open-webui
< 3.10.3-1.1+ 3 more
- (no CPE)range: < 3.10.3-1.1
- (no CPE)range: < 2.7.3-r27
- (no CPE)range: < 0.11.3-r1
- (no CPE)range: < 0.11.3-r1
Patches
Vulnerability mechanics
References
5- github.com/nltk/nltk/commit/c3e37113742a1ebeeb4f2ca58941f320f98805eanvdPatchWEB
- github.com/advisories/GHSA-5gh2-94qg-qppqghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2026-71513ghsaADVISORY
- www.vulncheck.com/advisories/nltk-through-remote-code-execution-via-allowlistunpickler-dotted-name-bypassnvdThird Party AdvisoryPatchWEB
- github.com/nltk/nltk/blob/v3.10.2/nltk/picklesec.pynvdProductWEB
News mentions
1- NLTK: Thirteen Path Traversal, RCE, and DoS Vulnerabilities Disclosed TogetherVypr Intelligence · Aug 22, 2026