LIVE · cybersecurity feed
Latest
Archive
CVE Tracker
Report
Ransomware
Vulnerability
Breach
Malware
Nation-state
Phishing
Zero-day
AI
Cloud
Live wire
OpenAI Announced $1B in Defensive Tools for Water Utilities
Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials
CVE-2026-59346 · Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code
CVE-2026-32475 · Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites
Broadcom Patches Critical VMware Workstation and Fusion VM-Escape Vulnerabilities
Hackers Leak Millions of Airport Passenger Records After Ransom Refusal
Using a VM to Contain an AI Agent
CVE-2026-73749 · HPE Patches Critical RCE Vulnerabilities in AOS-CX
Companies Have Six Months to Prepare for Automated Attacks
Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters
OpenAI Announced $1B in Defensive Tools for Water Utilities
Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials
CVE-2026-59346 · Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code
CVE-2026-32475 · Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites
Broadcom Patches Critical VMware Workstation and Fusion VM-Escape Vulnerabilities
Hackers Leak Millions of Airport Passenger Records After Ransom Refusal
Using a VM to Contain an AI Agent
CVE-2026-73749 · HPE Patches Critical RCE Vulnerabilities in AOS-CX
Companies Have Six Months to Prepare for Automated Attacks
Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters
vendor
Nltk
21 CVEs published in the last four months. Exploited flaws first.
Critical
3
High
17
Medium
1
Exploited (KEV)
0
All recent CVEs
CVE
CVSS
Severity
Product
Summary
Published
CVE-2026-79657
9.8
critical
nltk
NLTK versions before 3.10.3 contain a remote code execution vulnerability in allowlisted pickle loaders that trust
11d ago
CVE-2026-79675
9.8
critical
nltk
NLTK before 3.10.3 fails to validate JVM options passed through the per-call options parameter in the java() funct
11d ago
CVE-2026-78683
9.6
critical
nltk
NLTK before 3.10.0 (affected versions <=3.9.4) contains an unsafe pickle deserialization vulnerability in the Tran
12d ago
CVE-2026-79674
8.2
high
nltk
NLTK versions before 3.10.3 contain a path sandbox bypass vulnerability in corpus-reader constructors that allows
11d ago
CVE-2026-33236
8.1
high
nltk
NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting rese
169d ago
CVE-2026-12252
7.8
high
nltk
In nltk/nltk versions 3.9.3 and earlier, five Stanford interface classes (StanfordPOSTagger, StanfordNERTagger, St
64d ago
CVE-2025-71408
7.8
high
nltk
NLTK (Natural Language Toolkit) before version 3.9.3 contains an eval injection vulnerability in the nltk.collocat
43d ago
CVE-2026-33231
7.5
high
nltk
NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting rese
169d ago
CVE-2026-78681
7.5
high
nltk
NLTK versions before 3.10.3 use xml.etree.ElementTree to parse XML in multiple modules, which honors entity declar
12d ago
CVE-2026-78682
7.5
high
nltk
NLTK before 3.10.3 contains a server-side request forgery vulnerability in nltk.pathsec.urlopen (and callers nltk.
12d ago
CVE-2026-62384
7.5
high
nltk
NLTK versions before 3.10.2 contain a symlink-based sandbox bypass in FramenetCorpusReader that allows attackers t
14d ago
CVE-2026-81722
7.5
high
nltk
nltk PorterStemmer in versions <= 3.10.2 (fixed in 3.10.3) contains an inefficient-algorithmic-complexity denial o
9d ago
CVE-2026-54293
7.5
high
nltk
NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting rese
75d ago
CVE-2026-63312
7.5
high
nltk
NLTK before 3.10.0 contains an arbitrary local file read vulnerability in StreamBackedCorpusView that bypasses pat
14d ago
CVE-2026-66393
7.5
high
nltk
NLTK versions before 3.9.4 contain an unbounded recursion vulnerability in JSONTaggedDecoder.decode_obj() that all
14d ago
CVE-2026-80205
7.5
high
nltk
NLTK versions before 3.10.0 contain a regular expression denial of service vulnerability in Text.findall() and Tok
10d ago
CVE-2026-62388
7.5
high
nltk
NLTK versions before 3.10.0 default to ENFORCE=False in pathsec.py, causing all security validation functions to e
14d ago
CVE-2026-81727
7.1
high
nltk
NLTK versions before 3.10.3 contain a filesystem containment bypass vulnerability in the Downloader.download and D
9d ago
CVE-2026-63310
7.1
high
nltk
NLTK before 3.9.3 fails to verify file integrity after downloading packages and before extraction in the downloade
14d ago
CVE-2026-81726
7
high
nltk
NLTK through 3.10.3 contains a path traversal vulnerability in model-artifact APIs that bypass pathsec enforcement
9d ago
CVE-2026-33230
6.1
medium
nltk
NLTK (Natural Language Toolkit) is a suite of open source Python modules, data sets, and tutorials supporting rese
169d ago
Filter the full tracker by Nltk →