CVE-2026-0848Disclosure(nltk / nltk)

MEDIUMCVSS 10.0 · CRITICAL

Exploit discussion active in current signal (2 latest mentions)

Immediate actions

  • Patch nltk nltk systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

NLTK versions <=3.9.2 are vulnerable to arbitrary code execution due to improper input validation in the StanfordSegmenter module. The module dynamically loads external Java .jar files without verification or sandboxing. An attacker can supply or replace the JAR file, enabling the execution of arbitrary Java bytecode at import time. This vulnerability can be exploited through methods such as model poisoning, MITM attacks, or dependency poisoning, leading to remote code execution. The issue arises from the direct execution of the JAR file via subprocess with unvalidated classpath input, allowing malicious classes to execute when loaded by the JVM.

4.3/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-20

Priority

MEDIUM

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • nltk

Threat summary

  • Public PoC and exploit tooling are both present
  • Patch or workaround signal is available
  • 14 mentions across 8 observed days
  • Momentum state: stable

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 2 signals
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 7 signals
  • Disclosure: 7 classified signals
  • General: 4 classified signals
  • Peaked 6d ago at 3 mentions (2026-03-07); latest day: 2
  • 14 total mentions across 8 days

Affected systems

Vendors
Products
nltk

Deep dive

Activity timeline14 mentions / 8d
01223Mentions · 2026-03-05: 2Mentions · 2026-03-07: 3Mentions · 2026-03-30: 2Mentions · 2026-03-31: 2Mentions · 2026-04-02: 1Mentions · 2026-04-04: 1Mentions · 2026-07-04: 1Mentions · 2026-08-31: 2PoC Mentioned / Linked · 2026-03-07: 1PoC Mentioned / Linked · 2026-08-31: 1Exploit Tool / Code · 2026-08-31: 1Patch / Workaround · 2026-07-04: 1Technical Details · 2026-03-05: 2Technical Details · 2026-03-07: 3Technical Details · 2026-07-04: 1Technical Details · 2026-08-31: 103-0503-0703-3003-3104-0204-0407-0408-31
Signal classification5 categories
Disclosure
750.0%
General
428.6%
Patch
17.1%
Exploit
17.1%
PoC
17.1%
Referenced assets9 URLs
Classification over time
DateTotalLabels
2026-03-052
Disclosure2
2026-03-073
Disclosure3
2026-03-302
General2
2026-03-312
Disclosure1General1
2026-04-021
General1
2026-04-041
Disclosure1
2026-07-041
Patch1
2026-08-312
Exploit1PoC1
Full discourse14 posts
  • elhacker.NET@elhackernet
    General

    [Blog] Cómo un fallo en una librería de Python puede comprometer sistemas de IA (CVE-2026-0848) https://blog.elhacker.net/2026/04/como-un-fallo-en-una-libreria-de-python.html

    Post summary

    The blog post references CVE-2026-0848 as a flaw in a Python library that could affect AI systems, but it does not provide PoC details, exploit code, or remediation guidance.

    0501421.7K
    140.8K followersView on X
  • maru@maru1151157
    Disclosure

    🚨 CVE-2026-0848 (CVSS: 10.0) NLTK &lt;=3.9.2 の StanfordSegmenter モジュールで、外部JARの無検証読み込みが可能。攻撃者はJARを置き換えて任意コード実行を可能にし、モデル汚染・MITMなどでリモートコード実行が可能。 https://maruomosquit.com/vulnerability/CVE-2026-0848/ #脆弱性 #セキュリティ

    Post summary

    The post highlights the technical details and severity of CVE-2026-0848, indicating a high‑severity RCE via JAR replacement, but no active exploitation or exploit code is provided.

    000110402
    1.5K followersView on X
  • ExploitGrid@exploitgrid
    PoC

    [CVE] CVE-2026-0848 [CRITICAL/PoC] #Arbitrary Code Execution in NLTK StanfordSegmenter via Untrusted JAR Loading ⚠️ Recorded Exploit Available 🔗 https://exploitgrid.net/cve/CVE-2026-0848

    Post summary

    The post announces CVE‑2026‑0848 as a critical vulnerability enabling arbitrary code execution in NLTK’s StanfordSegmenter via untrusted JAR loading, and notes that a recorded exploit and PoC are available on ExploitGrid.

    1000054
    38 followersView on X
  • ExploitGrid@exploitgrid
    Exploit

    🛡️ #ExploitGrid Daily #Threat Digest Top Vulnerabilities (CVEs) of the day CVE-2025-71338 - EXPLOIT CVE-2025-71389 - EXPLOIT CVE-2026-0092 - EXPLOIT CVE-2026-0848 - EXPLOIT CVE-2026-12485 - EXPLOIT ..🧵👇

    Post summary

    The tweet lists several CVEs marked as ‘EXPLOIT’, indicating known exploitable vulnerabilities, but provides no PoC, tool, or detailed technical information.

    1000063
    38 followersView on X
  • Una al día@unaaldia
    General

    Cómo un fallo en una librería de Python puede comprometer sistemas de IA (CVE-2026-0848) https://unaaldia.hispasec.com/2026/03/como-un-fallo-en-una-libreria-de-python-puede-comprometer-sistemas-de-ia-cve-2026-0848.html

    Post summary

    The article announces CVE-2026-0848 as a flaw in a Python library that could affect AI systems, but offers no further technical, exploit, or patch details.

    00001332
    17.3K followersView on X
  • Upwind Security MDR@UpwindMDR
    Patch

    🚨High - NLTK Untrusted JAR Code Execution in Stanford Interfaces (CVE-2026-12252) Five of NLTK's Stanford wrapper classes - StanfordPOSTagger, StanfordNERTagger, StanfordParser, StanfordDependencyParser, and StanfordNeuralDependencyParser - accept user-controllable JAR paths and execute them via java() / subprocess.Popen() with no integrity verification. Loading an attacker-supplied or tampered JAR through any of these classes yields arbitrary code execution. It's the same flaw as CVE-2026-0848 (fixed for StanfordSegmenter with SHA256 verification), but that fix was never applied to these five classes. 👉Affected: nltk <= 3.9.3 - avoid loading untrusted JAR paths via the Stanford interfaces; apply the patched release once available.

    Post summary

    The tweet highlights an untrusted JAR code‑execution vulnerability in NLTK’s Stanford wrapper classes (CVE‑2026‑12252), specifies affected versions, and recommends avoiding untrusted JAR paths and applying the pending patch.

    0000091
    236 followersView on X
  • Saint Intelligence@Saint_Intel
    Disclosure

    Cómo un fallo en una librería de Python puede comprometer sistemas de IA (CVE-2026-0848) https://unaaldia.hispasec.com/2026/03/como-un-fallo-en-una-libreria-de-python-puede-comprometer-sistemas-de-ia-cve-2026-0848.html #vulnerabilidad #ciberseguridad

    Post summary

    The article announces CVE-2026-0848—a Python library vulnerability that could compromise AI systems—but does not provide additional technical details, exploit code, or patch information.

    0000037
    255 followersView on X
  • SuperModoRoot@SuperModoRoot
    Disclosure

    Cómo un fallo en una librería de Python puede comprometer sistemas de IA (CVE-2026-0848) https://unaaldia.hispasec.com/2026/03/como-un-fallo-en-una-libreria-de-python-puede-comprometer-sistemas-de-ia-cve-2026-0848.html

    Post summary

    The article introduces CVE‑2026‑0848, describing a flaw in a Python library that could compromise AI systems, but offers no further technical details or remediation guidance.

    0000031
    434 followersView on X
  • AllCy@all_cy43793
    General

    🚨 ALERTA RÁPIDA 🔐 CVE-2026-0848 — Python (entornos de IA) #Vulnerability #Python #IA #Cybersecurity #AllCy https://www.linkedin.com/posts/allcy_alerta-r%C3%A1pida-cve-2026-0848-python-activity-7444453388072837120-M0TQ

    Post summary

    A concise alert post that names CVE-2026-0848 in Python AI environments but offers no further technical or remedial detail.

    0000051
    1 followersView on X
  • Manuel Marcos@manolomarcosp
    General

    Cómo un fallo en una librería de Python puede comprometer sistemas de IA (CVE-2026-0848) https://unaaldia.hispasec.com/2026/03/como-un-fallo-en-una-libreria-de-python-puede-comprometer-sistemas-de-ia-cve-2026-0848.html

    Post summary

    The text only references a CVE in an article title; insufficient information is available to assess technical specifics, exploit availability, patch status, or active exploitation.

    0000036
    226 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-0848 NLTK versions &lt;=3.9.2 are vulnerable to arbitrary code execution due to improper input validation in the StanfordSegmenter module. The module dynamically loads external… https://www.cve.org/CVERecord?id=CVE-2026-0848

    Post summary

    NLTK versions <=3.9.2 are vulnerable to arbitrary code execution caused by improper input validation in the StanfordSegmenter module, with no proof‑of‑concept, exploit code, patch, or active exploitation information provided.

    00000172
    56.6K followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-0848 - Critical NLTK versions &amp;lt;=3.9.2 are vulnerable to arbitrary code execution due to improper input validation in the StanfordSegmenter module. The module dynamically loads external Java .jar files ... https://www.thehackerwire.com/vulnerability/CVE-2026-0848/ https://t.co/ObbmFkmo2f

    Post summary

    The post discloses that NLTK versions ≤3.9.2 are vulnerable to arbitrary code execution via the StanfordSegmenter module’s improper input validation, introducing CVE‑2026‑0848.

    0000033
    128 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-0848 Arbitrary Code Execution in NLTK StanfordSegmenter via Unvalidated JAR File Loading https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-0848

    Post summary

    CVE-2026-0848 exposes arbitrary code execution in NLTK's StanfordSegmenter through unvalidated JAR file loading; details are available via the provided vulnerability link.

    0000047
    4.0K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-0848: CRITICAL] Vulnerability in NLTK versions &lt;=3.9.2 allows arbitrary code execution by improper input validation in StanfordSegmenter module. Attackers can exploit this flaw for remote code execut...#cve,CVE-2026-0848,#cybersecurity https://cvefind.com/CVE-2026-0848

    Post summary

    The post announces a critical CVE affecting NLTK, detailing the remote code execution flaw, but does not provide PoC code, patch information, or evidence of active exploitation.

    0000071
    596 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appnltknltk---

Explore more