Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
NLTK through 3.8.1 allows remote code execution if untrusted packages have pickled Python code, and the integrated data package download functionality is used. This affects, for example, averaged_perceptron_tagger and punkt.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NLTK 安全漏洞
Vulnerability Description
NLTK是一个自然语言工具包。用于支持自然语言处理的研究和开发。 NLTK 3.8.1 版本及之前版本存在安全漏洞,该漏洞源于如果使用集成的数据包下载功能,并且不受信任的包包含 pickled 库,则可能导致远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A