NLTK through 3.8.1 allows remote code execution if untrusted packages have pickled Python code, and the integrated data package download functionality is used. This affects, for example, averagedperceptrontagger and punkt.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-39705.json"