
CVE-2026-12372 A Server-Side Request Forgery (SSRF) vulnerability exists in nltk/nltk versions 3.9.4 and the current develop branch. The `nltk.pathsec.validate_network_url()` functi… https://www.cve.org/CVERecord?id=CVE-2026-12372
Post summary
The text reports the discovery of a new Server‑Side Request Forgery vulnerability in nltk/nltk affecting versions 3.9.4 and the develop branch, with no evidence of active exploitation or available fixes.


