Количество 5
Количество 5
CVE-2026-80205
NLTK versions before 3.10.0 contain a regular expression denial of service vulnerability in Text.findall() and TokenSearcher.findall() methods that accept user-supplied regular expressions without validation or timeout. Attackers can supply crafted regex patterns that cause catastrophic backtracking, resulting in indefinite CPU saturation and denial of service to all users of the Python process.
CVE-2026-80205
NLTK versions before 3.10.0 contain a regular expression denial of service vulnerability in Text.findall() and TokenSearcher.findall() methods that accept user-supplied regular expressions without validation or timeout. Attackers can supply crafted regex patterns that cause catastrophic backtracking, resulting in indefinite CPU saturation and denial of service to all users of the Python process.
CVE-2026-80205
NLTK versions before 3.10.0 contain a regular expression denial of service vulnerability in Text.findall() and TokenSearcher.findall() methods that accept user-supplied regular expressions without validation or timeout. Attackers can supply crafted regex patterns that cause catastrophic backtracking, resulting in indefinite CPU saturation and denial of service to all users of the Python process.
CVE-2026-80205
NLTK versions before 3.10.0 contain a regular expression denial of ser ...
GHSA-rrv8-h7p8-rx55
NLTK: ReDoS in nltk.text.Text.findall() via unvalidated user-supplied regular expressions
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-80205 NLTK versions before 3.10.0 contain a regular expression denial of service vulnerability in Text.findall() and TokenSearcher.findall() methods that accept user-supplied regular expressions without validation or timeout. Attackers can supply crafted regex patterns that cause catastrophic backtracking, resulting in indefinite CPU saturation and denial of service to all users of the Python process. | CVSS3: 7.5 | 0% Низкий | 22 дня назад | |
CVE-2026-80205 NLTK versions before 3.10.0 contain a regular expression denial of service vulnerability in Text.findall() and TokenSearcher.findall() methods that accept user-supplied regular expressions without validation or timeout. Attackers can supply crafted regex patterns that cause catastrophic backtracking, resulting in indefinite CPU saturation and denial of service to all users of the Python process. | CVSS3: 7.5 | 0% Низкий | 22 дня назад | |
CVE-2026-80205 NLTK versions before 3.10.0 contain a regular expression denial of service vulnerability in Text.findall() and TokenSearcher.findall() methods that accept user-supplied regular expressions without validation or timeout. Attackers can supply crafted regex patterns that cause catastrophic backtracking, resulting in indefinite CPU saturation and denial of service to all users of the Python process. | CVSS3: 7.5 | 0% Низкий | 22 дня назад | |
CVE-2026-80205 NLTK versions before 3.10.0 contain a regular expression denial of ser ... | CVSS3: 7.5 | 0% Низкий | 22 дня назад | |
GHSA-rrv8-h7p8-rx55 NLTK: ReDoS in nltk.text.Text.findall() via unvalidated user-supplied regular expressions | CVSS3: 7.5 | 0% Низкий | 9 дней назад |
Уязвимостей на страницу