A vulnerability categorized as problematic has been discovered in NLTK up to 3.9.2. Affected by this vulnerability is the function eval of the file collocations.py of the component collocations. Executing a manipulation can lead to os command injection.

This vulnerability is registered as CVE-2025-71408. The attack needs to be launched locally. No exploit is available.

It is advisable to upgrade the affected component.