Multiple vulnerabilities in Vim (CVE not specified) allow an anonymous attacker to execute arbitrary code, though a remote attack vector is not present. The CVSS Base Score is 7.8 (High). Affected versions are Open Source vim prior to versions 9.2.0735 and 9.2.0736, and a mitigation is available.
[WID-SEC-2026-2115] vim: Mehrere Schwachstellen ermöglichen Codeausführung CVSS Base Score 7.8 (hoch) CVSS Temporal Score 6.8 (mittel) Remoteangriff nein Datum 28.06.2026 Stand 29.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Sonstiges UNIX Windows Produktbeschreibung Vim (Vi IMproved) ist eine Weiterentwicklung des Texteditors vi. Produkte 28.06.2026 Open Source vim <9.2.0735 Open Source vim <9.2.0736 Angriff Angriff Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in vim ausnutzen, um beliebigen Programmcode auszuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben