ざと[verified]@hoppiece_Patch
HojiChar released v0.17.3, patching the critical NLTK CVE‑2026‑79657 by removing the vulnerable library and replacing it with equivalent local code.
DFIR Lab[verified]@DFIR_LabPatch
The tweet announces the critical CVE‑2026‑79657 affecting NLTK, detailing RCE via unsafe pickle deserialization and urging users to update immediately.
Upwind Security MDR[verified]@UpwindMDRDisclosure
The message announces CVE-2026-79657 as a critical NLTK remote‑code‑execution flaw using malicious pickles, explains how it works, and recommends upgrading to 3.10.3, but no proof of concept, exploit tool, or active exploitation is cited.
ThreatAft@ThreatAftDisclosure
The post announces the disclosure of CVE-2026-79657 with a CVSS score of 9.8, describing it as an allowlisted pickle RCE. No exploit, patch, or active exploitation details are given, but a link to a fuller article is provided.