Symlink-based Sandbox Bypass Vulnerability in NLTK's FramenetCorpusReader
CVE-2026-62384
8.7HIGH
What is CVE-2026-62384?
Versions of NLTK prior to 3.10.2 possess a vulnerability that enables attackers to exploit a sandbox bypass in the FramenetCorpusReader component. By creating symlinks within the corpus subdirectory that lack path separators, unauthorized access to XML files outside the designated corpus root is facilitated. This flaw can be exploited through methods such as frame_by_name(), _lu_file(), or doc(), thereby compromising the intended data encapsulation and security measures.
Affected Version(s)
nltk 3.10.0 < 3.10.2
nltk 3.10.2
