Neovim
neovim
6 CVEs • 1 product
Products (1)
Click to collapseToggle
Products (1)
Click to collapse
CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Vim is an open source, command line text editor. Prior to version 9.2.0450, a heap buffer overflow exists in read_compound() in src/spellfile.c when loading a crafted spell file (.spl) with UTF-8 encoding active. An atta...Show more |
Vim is an open source, command line text editor. Prior to version 9.1.2132, a heap buffer overflow vulnerability exists in Vim's tag file resolution logic when processing the 'helpfile' option. The vulnerability is locat...Show more |
3Neovim NetappVim3Bootstrap Os NeovimVimJun 9, 2026 Jan 13, 2025 N/A· v4 5.5 MEDIUM· v3 N/A· v2 When switching to other buffers using the :all command and visual mode still being active, this may cause a heap-buffer overflow, because Vim does not properly end visual mode and therefore may try to access beyond the e...Show more |
3Neovim NetappVim3Bootstrap Os NeovimVimJun 9, 2026 Aug 16, 2024 N/A· v4 4.7 MEDIUM· v3 N/A· v2 The UNIX editor Vim prior to version 9.1.0678 has a use-after-free error in argument list handling. When adding a new file to the argument list, this triggers `Buf*` autocommands. If in such an autocommand the buffer tha...Show more |
4Debian FedoraprojectNeovim+1 more4Debian Linux FedoraNeovim+1 moreMay 29, 2026 Dec 1, 2021 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 vim is vulnerable to Heap-based Buffer Overflow |
getchar.c in Vim before 8.1.1365 and Neovim before 0.3.6 allows remote attackers to execute arbitrary OS commands via the :source! command in a modeline, as demonstrated by execute in Vim, and assert_fails or nvim_input...Show more |