---
id: CVE-2026-79675
title: >-
  nltk: NLTK before 3.10.3 JVM Argument Injection via Per-Call Options
  (CVE-2026-79675)
summary: >-
  A flaw was found in NLTK. When processing untrusted input for its `per-call
  options` parameter in the `java()` function, NLTK fails to validate Java
  Virtual Machine (JVM) options. A remote attacker could exploit this by
  injecting dangerous…
severity: high
cvss: 8.1
cvssVector: 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H'
cvssSource: vendor
cwe: CWE-88
vendor: Red Hat
product: Red Hat OpenShift AI (RHOAI)
affected:
  - exploit_intelligence
  - lightspeed_core
  - openshift_lightspeed
  - ansible_automation_platform 2
  - openshift_ai_rhoai
patched:
  - nltk 3.10.3
published: '2026-08-25'
updated: '2026-09-15'
sourceUpdated: '2026-09-15T13:22:06+00:00'
source: CSAF
sourceUrl: 'https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-79675.json'
references:
  - url: >-
      https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-79675.json
  - url: 'https://access.redhat.com/security/cve/CVE-2026-79675'
  - url: 'https://bugzilla.redhat.com/show_bug.cgi?id=2523556'
  - url: 'https://www.cve.org/CVERecord?id=CVE-2026-79675'
  - url: 'https://nvd.nist.gov/vuln/detail/CVE-2026-79675'
  - url: 'https://github.com/nltk/nltk/security/advisories/GHSA-m4rf-3fr8-xwx3'
  - url: >-
      https://www.vulncheck.com/advisories/nltk-before-jvm-argument-injection-via-per-call-options
  - url: >-
      https://github.com/nltk/nltk/commit/8fa9650b6009aacfdebbc33d2a08d32c0858ea6c
  - url: 'https://github.com/nltk/nltk'
  - url: 'https://github.com/nltk/nltk/releases/tag/v3.10.3'
  - url: 'https://github.com/advisories/GHSA-m4rf-3fr8-xwx3'
tags:
  - csaf
  - vex
  - red-hat
  - osv
  - pip
  - ghsa
epss: 0.00775
epssPercentile: 0.53833
aliases:
  - GHSA-m4rf-3fr8-xwx3
  - PYSEC-2026-3749
ecosystem: pip
scores:
  vendor: 8.1
  osv: 9.8
ingestedAt: '2026-09-01T21:32:41.640Z'
---

## Overview

A flaw was found in NLTK. When processing untrusted input for its `per-call options` parameter in the `java()` function, NLTK fails to validate Java Virtual Machine (JVM) options. A remote attacker could exploit this by injecting dangerous JVM flags, such as -agentpath or -javaagent, to achieve arbitrary code execution. Successful exploitation requires specific conditions, indicating a higher attack complexity.

## Vendor advisories

- **Red Hat VEX** · Important · affected: Exploit Intelligence, Lightspeed Core, OpenShift Lightspeed, Red Hat Ansible Automation Platform 2, Red Hat OpenShift AI (RHOAI) · no fix planned: Exploit Intelligence, Red Hat Ansible Automation Platform 2, Lightspeed Core, OpenShift Lightspeed, … · updated 2026-09-15 · [vex](https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-79675.json)

**nltk: NLTK before 3.10.3 JVM Argument Injection via Per-Call Options** — rated Important by Red Hat. Released 2026-08-25, updated 2026-09-15.

Affected:

- Exploit Intelligence
- Lightspeed Core
- OpenShift Lightspeed
- Red Hat Ansible Automation Platform 2
- Red Hat OpenShift AI (RHOAI)

No fix planned:

- Exploit Intelligence
- Red Hat Ansible Automation Platform 2
- Lightspeed Core
- OpenShift Lightspeed
- Red Hat OpenShift AI (RHOAI)

Not affected:

- Red Hat OpenShift AI (RHOAI)

## Remediation

Will not fix

Workarounds / mitigations:

- Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.

## Package advisory (CVE-2026-79675)

Affected packages:

- `nltk < 3.10.3`

Patched in:

- `nltk 3.10.3`

Source: https://osv.dev/vulnerability/GHSA-m4rf-3fr8-xwx3
