Security Advisory

CVE-2024-39705

9.8
CRITICAL

Vulnerability Description

NLTK through 3.8.1 allows remote code execution if untrusted packages have pickled Python code, and the integrated data package download functionality is used. This affects, for example, averaged_perceptron_tagger and punkt.
Published Date June 27, 2024
Official Source NIST NVD Advisory