Skip to main content

Vendor archive

vim CVEs

Beta · best-effort

251 CVEs tagged to vendor vim14 Critical, 146 High, 75 Medium, 16 Low, 0 Unrated.

CVE-2019-12735

Published Jun 5, 2019

getchar.c in Vim before 8.1.1365 and Neovim before 0.3.6 allows remote attackers to execute arbitrary OS commands via the :source! command in a modeline, as demonstrated by execut…

CVSS 8.6 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2017-1000382

Published Oct 31, 2017

VIM version 8.0.1187 (and other versions most likely) ignores umask when creating a swap file ("[ORIGINAL_FILENAME].swp") resulting in files that may be world readable or otherwis…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-11109

Published Jul 8, 2017

Vim 8.0 allows attackers to cause a denial of service (invalid free) or possibly have unspecified other impact via a crafted source (aka -S) file. NOTE: there might be a limited n…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-6350

Published Feb 27, 2017

An integer overflow at an unserialize_uep memory allocation site would occur for vim before patch 8.0.0378, if it does not properly validate values for tree length when reading a…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-6349

Published Feb 27, 2017

An integer overflow at a u_read_undo memory allocation site would occur for vim before patch 8.0.0377, if it does not properly validate values for tree length when reading a corru…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-5953

Published Feb 10, 2017

vim before patch 8.0.0322 does not properly validate values for tree length when handling a spell file, which may result in an integer overflow at a memory allocation site and a r…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-1248

Published Nov 23, 2016

vim before patch 8.0.0056 does not properly validate values for the 'filetype', 'syntax' and 'keymap' options, which may result in the execution of arbitrary code if a file with a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2010-3914

Published Nov 3, 2010

Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-6235

Published Feb 21, 2009

The Netrw plugin (netrw.vim) in Vim 7.0 and 7.1 allows user-assisted attackers to execute arbitrary commands via shell metacharacters in a filename used by the (1) "D" (delete) co…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3076

Published Feb 21, 2009

The Netrw plugin 125 in netrw.vim in Vim 7.2a.10 allows user-assisted attackers to execute arbitrary code via shell metacharacters in filenames used by the execute and system func…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3075

Published Feb 21, 2009

The shellescape function in Vim 7.0 through 7.2, including 7.2a.10, allows user-assisted attackers to execute arbitrary code via the "!" (exclamation point) shell metacharacter in…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3074

Published Feb 21, 2009

The shellescape function in Vim 7.0 through 7.2, including 7.2a.10, allows user-assisted attackers to execute arbitrary code via the "!" (exclamation point) shell metacharacter in…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2009-0316

Published Jan 28, 2009

Untrusted search path vulnerability in src/if_python.c in the Python interface in Vim before 7.2.045 allows local users to execute arbitrary code via a Trojan horse Python file in…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4677

Published Oct 22, 2008

autoload/netrw.vim (aka the Netrw Plugin) 109, 131, and other versions before 133k for Vim 7.1.266, other 7.1 versions, and 7.2 stores credentials for an FTP session, and sends th…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3432

Published Oct 10, 2008

Heap-based buffer overflow in the mch_expand_wildcards function in os_unix.c in Vim 6.2 and 6.3 allows user-assisted attackers to execute arbitrary code via shell metacharacters i…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4101

Published Sep 18, 2008

Vim 3.0 through 7.x before 7.2.010 does not properly escape characters, which allows user-assisted attackers to (1) execute arbitrary shell commands by entering a K keystroke on a…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-3294

Published Jul 24, 2008

src/configure.in in Vim 5.0 through 7.1, when used for a build with Python support, does not ensure that the Makefile-conf temporary file has the intended ownership and permission…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort
Showing 226-250 of 251 CVEsPage 10 of 11