THREAT OPS › Threat News › [GHSA] GHSA-xh95-f55m-82fw (high) — Natural Language Toolkit (NLTK) has path traversal in FramenetCorpusReader.frame() that allows arbitrary XML file read, bypassing the nltk.pathsec sandbox (ENFORCE=True)
[GHSA] GHSA-xh95-f55m-82fw (high) — Natural Language Toolkit (NLTK) has path traversal in FramenetCorpusReader.frame() that allows arbitrary XML file read, bypassing the nltk.pathsec sandbox (ENFORCE=True)
GHSA-xh95-f55m-82fw Severity: high CVE: CVE-2026-12074
Natural Language Toolkit (NLTK) has path traversal in FramenetCorpusReader.frame() that allows arbitrary XML file read, bypassing the nltk.pathsec sandbox (ENFORCE=True)
### Summary `FramenetCorpusReader.frame(name)` interpolates a caller-supplied frame name into an XML file path that is read with the builtin `open()`, bypassing `CorpusReade
MITRE ATT&CK techniques
- CredentialsT1589.001
Indicators of compromise
- CVE-2026-12074cve
- http://framenet.icsi.berkeley.eduurl
Original source: https://github.com/advisories/GHSA-xh95-f55m-82fw