Описание
NLTK through 3.8.1 allows remote code execution if untrusted packages have pickled Python code, and the integrated data package download functionality is used. This affects, for example, averaged_perceptron_tagger and punkt.
Ссылки
EPSS
Процентиль: 93%
0.10792
Средний
9.8 Critical
CVSS3
Дефекты
CWE-502
Связанные уязвимости
CVSS3: 9.8
ubuntu
больше 1 года назад
NLTK through 3.8.1 allows remote code execution if untrusted packages have pickled Python code, and the integrated data package download functionality is used. This affects, for example, averaged_perceptron_tagger and punkt.
CVSS3: 9.8
debian
больше 1 года назад
NLTK through 3.8.1 allows remote code execution if untrusted packages ...
EPSS
Процентиль: 93%
0.10792
Средний
9.8 Critical
CVSS3
Дефекты
CWE-502