CVE-2026-0848 — NLTK versions <=3.9.2 are vulnerable to arbitrary code execution due to improper input validation in the StanfordSegmenter module. The module dynamically loads external Java .jar files without veri — CVE Database · The Intelligence Room