Vulnerabilities (CVE)

Filtered by vendor Vim Subscribe
Total 202 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-20079 2 Canonical, Vim 2 Ubuntu Linux, Vim 2024-11-21 6.8 MEDIUM 7.8 HIGH
The autocmd feature in window.c in Vim before 8.1.2136 accesses freed memory.
CVE-2019-12735 2 Neovim, Vim 2 Neovim, Vim 2024-11-21 9.3 HIGH 8.6 HIGH
getchar.c in Vim before 8.1.1365 and Neovim before 0.3.6 allows remote attackers to execute arbitrary OS commands via the :source! command in a modeline, as demonstrated by execute in Vim, and assert_fails or nvim_input in Neovim.