Known Vulnerabilities for products from Vim
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Vim".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-52860 json | Vim is an open source, command line text editor. Prior to version 9.2.0597, Vim's Python omni-completion executes reconstruct... | Not Provided | 2026-06-11 | 2026-06-15 |
| CVE-2026-52859 json | Vim is an open source, command line text editor. Prior to version 9.2.0565, the update_snapshot() function in src/terminal.c ... | Not Provided | 2026-06-11 | 2026-06-15 |
| CVE-2026-52858 json | Vim is an open source, command line text editor. Prior to version 9.2.0561, the Python omni-completion script in python3compl... | Not Provided | 2026-06-11 | 2026-06-15 |
| CVE-2026-47167 json | Vim is an open source, command line text editor. Prior to version 9.2.0496, a code injection vulnerability exists in s:stepma... | Not Provided | 2026-06-11 | 2026-06-15 |
| CVE-2026-47162 json | Vim is an open source, command line text editor. Prior to version 9.2.0495, a Vimscript code injection vulnerability exists i... | Not Provided | 2026-06-11 | 2026-06-13 |
| CVE-2026-46483 json | Vim is an open source, command line text editor. Prior to 9.2.0479, a command injection vulnerability exists in tar#Vimuntar(... | Not Provided | 2026-05-15 | 2026-05-19 |
| CVE-2026-45130 json | Vim is an open source, command line text editor. Prior to version 9.2.0450, a heap buffer overflow exists in read_compound() ... | Not Provided | 2026-05-08 | 2026-06-09 |
| CVE-2026-44656 json | Vim is an open source, command line text editor. Prior to version 9.2.0435, an OS command injection vulnerability exists in V... | Not Provided | 2026-05-08 | 2026-05-14 |
| CVE-2026-42307 json | Vim is an open source, command line text editor. Prior to version 9.2.0383, an OS command injection vulnerability exists in t... | Not Provided | 2026-05-08 | 2026-05-14 |
| CVE-2026-41411 json | Vim is an open source, command line text editor. Prior to 9.2.0357, A command injection vulnerability exists in Vim's tag fil... | Not Provided | 2026-04-24 | 2026-04-27 |
| CVE-2026-39881 json | Vim is an open source, command line text editor. Prior to 9.2.0316, a command injection vulnerability in Vim's netbeans inter... | Not Provided | 2026-04-08 | 2026-04-22 |
| CVE-2026-35177 json | Vim is an open source, command line text editor. Prior to 9.2.0280, a path traversal bypass in Vim's zip.vim plugin allows ov... | Not Provided | 2026-04-06 | 2026-04-20 |
| CVE-2026-34982 json | Vim is an open source, command line text editor. Prior to version 9.2.0276, a modeline sandbox bypass in Vim allows arbitrary... | Not Provided | 2026-04-06 | 2026-04-22 |
| CVE-2026-34714 json | Vim before 9.2.0272 allows code execution that happens immediately upon opening a crafted file in the default configuration, ... | Not Provided | 2026-03-30 | 2026-04-03 |
| CVE-2026-25749 json | Vim is an open source, command line text editor. Prior to version 9.1.2132, a heap buffer overflow vulnerability exists in Vi... | Not Provided | 2026-02-06 | 2026-06-09 |
| CVE-2025-53906 json | Vim is an open source, command line text editor. Prior to version 9.1.1551, a path traversal issue in Vim’s zip.vim plugin ... | Not Provided | 2025-07-15 | 2026-04-01 |
| CVE-2025-22134 json | When switching to other buffers using the :all command and visual mode still being active, this may cause a heap-buffer overf... | Not Provided | 2025-01-13 | 2026-06-09 |
| CVE-2025-9390 json | A security flaw has been discovered in vim up to 9.1.1615. Affected by this vulnerability is the function main of the file sr... | Not Provided | 2025-08-24 | 2026-04-29 |
| CVE-2025-9389 json | A vulnerability was identified in vim 9.1.0000. Affected is the function __memmove_avx_unaligned_erms of the file memmove-vec... | Not Provided | 2025-08-24 | 2026-04-29 |
| CVE-2024-43374 json | The UNIX editor Vim prior to version 9.1.0678 has a use-after-free error in argument list handling. When adding a new file to... | Not Provided | 2024-08-16 | 2026-06-09 |
Known software with vulnerabilities from Vim
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Vim | Vim | 5.6 |