Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 594
Alerts This Week
Warning Icon 1 594

Mageia Python-nltk Important Local File Read Vulnerability CVE-2026-54293

mageia
Calendar Grey July 20, 2026
Scroller Mageia
Critical security update for Mageia addresses a URL-encoded path traversal issue in python-nltk allowing local file read.
Security update

Summary

Description: URL-Encoded Path Traversal in nltk.data.load() Allows Arbitrary Local File Read. (CVE-2026-54293)

References

- https://bugs.mageia.org/show_bug.cgi?id=35762

- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/WMWF7SLMCGEL35KSK5ERA7U5CKTU5Z57/

- https://github.com/nltk/nltk/security/advisories/GHSA-p4gq-832x-fm9v

- https://www.cve.org/CVERecord?id=CVE-2026-54293

Resolution

SRPMS

- 10/core/python-nltk-3.9.4-1.1.mga10

- 9/core/python-nltk-3.9.4-1.1.mga9

Severity
important
Lowest
Low
Medium
High
Critical

Publication date: 20 Jul 2026 
URL: https://advisories.mageia.org/MGASA-2026-0281.html
Type: security
CVE: CVE-2026-54293

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.