Sploitus

CVE-2026-81726

No indexed exploits for CVE-2026-81726 yet

NLTK through 3.10.3 contains a path traversal vulnerability in model-artifact APIs that bypass pathsec enforcement by using raw file operations on caller-controlled paths. Attackers can read or write files outside allowed sandbox roots through TransitionParser, AveragedPerceptron, PerceptronTagger, and maxent parameter APIs when pathsec is enabled.

Affected products
Nltk
CVSS 4.0
8.3 HIGH
CVSS 3.1
7.0 HIGH
Weakness
CWE-73
NVD status
Received
Published
2026-08-27
CVE-2026-81726 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2026-81726 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2026-81726 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.