Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 46

Количество 46

suse-cvrf логотип

SUSE-SU-2026:1051-1

4 месяца назад

Security update for vim

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0910-1

4 месяца назад

Security update for vim

EPSS: Низкий
ubuntu логотип

CVE-2026-28417

5 месяцев назад

Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the `scp://` protocol handler), an attacker can execute arbitrary shell commands with the privileges of the Vim process. Version 9.2.0073 fixes the issue.

CVSS3: 4.4
EPSS: Низкий
redhat логотип

CVE-2026-28417

5 месяцев назад

Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the `scp://` protocol handler), an attacker can execute arbitrary shell commands with the privileges of the Vim process. Version 9.2.0073 fixes the issue.

CVSS3: 4.4
EPSS: Низкий
nvd логотип

CVE-2026-28417

5 месяцев назад

Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the `scp://` protocol handler), an attacker can execute arbitrary shell commands with the privileges of the Vim process. Version 9.2.0073 fixes the issue.

CVSS3: 4.4
EPSS: Низкий
msrc логотип

CVE-2026-28417

5 месяцев назад

Vim has OS Command Injection in netrw

CVSS3: 4.4
EPSS: Низкий
debian логотип

CVE-2026-28417

5 месяцев назад

Vim is an open source, command line text editor. Prior to version 9.2. ...

CVSS3: 4.4
EPSS: Низкий
fstec логотип

BDU:2026-02589

5 месяцев назад

Уязвимость текстового редактора vim, связанная с непринятием мер по нейтрализации специальных элементов, позволяющая нарушителю выполнить произвольные команды

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20403-1

4 месяца назад

Security update for vim

EPSS: Низкий
ubuntu логотип

CVE-2026-33412

4 месяца назад

Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n) in a pattern passed to glob(), an attacker may be able to execute arbitrary shell commands. This vulnerability depends on the user's 'shell' setting. This issue has been patched in version 9.2.0202.

CVSS3: 5.6
EPSS: Низкий
redhat логотип

CVE-2026-33412

4 месяца назад

Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n) in a pattern passed to glob(), an attacker may be able to execute arbitrary shell commands. This vulnerability depends on the user's 'shell' setting. This issue has been patched in version 9.2.0202.

CVSS3: 7.3
EPSS: Низкий
nvd логотип

CVE-2026-33412

4 месяца назад

Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n) in a pattern passed to glob(), an attacker may be able to execute arbitrary shell commands. This vulnerability depends on the user's 'shell' setting. This issue has been patched in version 9.2.0202.

CVSS3: 5.6
EPSS: Низкий
msrc логотип

CVE-2026-33412

4 месяца назад

Vim affected by Command injection via newline in glob()

CVSS3: 5.6
EPSS: Низкий
debian логотип

CVE-2026-33412

4 месяца назад

Vim is an open source, command line text editor. Prior to version 9.2. ...

CVSS3: 5.6
EPSS: Низкий
ubuntu логотип

CVE-2026-28421

5 месяцев назад

Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the issue.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-28421

5 месяцев назад

Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the issue.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2026-28421

5 месяцев назад

Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the issue.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2026-28421

5 месяцев назад

Vim has a heap-buffer-overflow and a segmentation fault

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2026-28421

5 месяцев назад

Vim is an open source, command line text editor. Versions prior to 9.2 ...

CVSS3: 5.3
EPSS: Низкий
redos логотип

ROS-20260524-73-0028

2 месяца назад

Уязвимость vim

CVSS3: 7.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2026:1051-1

Security update for vim

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0910-1

Security update for vim

4 месяца назад
ubuntu логотип
CVE-2026-28417

Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the `scp://` protocol handler), an attacker can execute arbitrary shell commands with the privileges of the Vim process. Version 9.2.0073 fixes the issue.

CVSS3: 4.4
1%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-28417

Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the `scp://` protocol handler), an attacker can execute arbitrary shell commands with the privileges of the Vim process. Version 9.2.0073 fixes the issue.

CVSS3: 4.4
1%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-28417

Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the `scp://` protocol handler), an attacker can execute arbitrary shell commands with the privileges of the Vim process. Version 9.2.0073 fixes the issue.

CVSS3: 4.4
1%
Низкий
5 месяцев назад
msrc логотип
CVE-2026-28417

Vim has OS Command Injection in netrw

CVSS3: 4.4
1%
Низкий
5 месяцев назад
debian логотип
CVE-2026-28417

Vim is an open source, command line text editor. Prior to version 9.2. ...

CVSS3: 4.4
1%
Низкий
5 месяцев назад
fstec логотип
BDU:2026-02589

Уязвимость текстового редактора vim, связанная с непринятием мер по нейтрализации специальных элементов, позволяющая нарушителю выполнить произвольные команды

CVSS3: 7.8
1%
Низкий
5 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20403-1

Security update for vim

4 месяца назад
ubuntu логотип
CVE-2026-33412

Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n) in a pattern passed to glob(), an attacker may be able to execute arbitrary shell commands. This vulnerability depends on the user's 'shell' setting. This issue has been patched in version 9.2.0202.

CVSS3: 5.6
1%
Низкий
4 месяца назад
redhat логотип
CVE-2026-33412

Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n) in a pattern passed to glob(), an attacker may be able to execute arbitrary shell commands. This vulnerability depends on the user's 'shell' setting. This issue has been patched in version 9.2.0202.

CVSS3: 7.3
1%
Низкий
4 месяца назад
nvd логотип
CVE-2026-33412

Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character (\n) in a pattern passed to glob(), an attacker may be able to execute arbitrary shell commands. This vulnerability depends on the user's 'shell' setting. This issue has been patched in version 9.2.0202.

CVSS3: 5.6
1%
Низкий
4 месяца назад
msrc логотип
CVE-2026-33412

Vim affected by Command injection via newline in glob()

CVSS3: 5.6
1%
Низкий
4 месяца назад
debian логотип
CVE-2026-33412

Vim is an open source, command line text editor. Prior to version 9.2. ...

CVSS3: 5.6
1%
Низкий
4 месяца назад
ubuntu логотип
CVE-2026-28421

Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the issue.

CVSS3: 5.3
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-28421

Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the issue.

CVSS3: 5.3
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-28421

Vim is an open source, command line text editor. Versions prior to 9.2.0077 have a heap-buffer-overflow and a segmentation fault (SEGV) exist in Vim's swap file recovery logic. Both are caused by unvalidated fields read from crafted pointer blocks within a swap file. Version 9.2.0077 fixes the issue.

CVSS3: 5.3
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2026-28421

Vim has a heap-buffer-overflow and a segmentation fault

CVSS3: 5.3
0%
Низкий
5 месяцев назад
debian логотип
CVE-2026-28421

Vim is an open source, command line text editor. Versions prior to 9.2 ...

CVSS3: 5.3
0%
Низкий
5 месяцев назад
redos логотип
ROS-20260524-73-0028

Уязвимость vim

CVSS3: 7.3
1%
Низкий
2 месяца назад

Уязвимостей на страницу