Aggregates CVE and security vulnerability intelligence across all Vim-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.
Disclosed issues often relate to vendor risk buffer overflow, vendor risk input validation, and vendor risk path handling; exposure may include vendor impact memory corruption in vendor surface production workloads contexts.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2023-4734 | Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1846. | [email protected] | 7.8 | 0.04% | 2023-09-02 | 2024-11-21 |
| CVE-2021-3236 | vim 8.2.2348 is affected by null pointer dereference, allows local attackers to cause a denial of service (DoS) via the ex_buffer_all method. | [email protected] | 5.5 | 0.02% | 2023-08-11 | 2024-11-21 |
| CVE-2023-3896 | Divide By Zero in vim/vim from 9.0.1367-1 to 9.0.1367-3 | [email protected] | 7.8 | 0.47% | 2023-08-07 | 2025-02-13 |
| CVE-2020-20703 | Buffer Overflow vulnerability in VIM v.8.1.2135 allows a remote attacker to execute arbitrary code via the operand parameter. | [email protected] | 9.8 | 3.91% | 2023-06-20 | 2024-12-10 |
| CVE-2023-2610 | Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1532. | [email protected] | 7.8 | 0.01% | 2023-05-09 | 2025-11-03 |
| CVE-2023-2609 | NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1531. | [email protected] | 5.5 | 0.02% | 2023-05-09 | 2024-11-21 |
| CVE-2023-2426 | Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 9.0.1499. | [email protected] | 5.5 | 0.01% | 2023-04-29 | 2024-11-21 |
| CVE-2023-1355 | NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1402. | [email protected] | 5.5 | 0.03% | 2023-03-11 | 2024-11-21 |
| CVE-2023-1264 | NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.1392. | [email protected] | 5.5 | 0.03% | 2023-03-07 | 2024-11-21 |
| CVE-2023-1175 | Incorrect Calculation of Buffer Size in GitHub repository vim/vim prior to 9.0.1378. | [email protected] | 6.6 | 0.03% | 2023-03-04 | 2025-11-03 |
| CVE-2023-1170 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376. | [email protected] | 6.6 | 0.05% | 2023-03-03 | 2024-11-21 |
| CVE-2023-1127 | Divide By Zero in GitHub repository vim/vim prior to 9.0.1367. | [email protected] | 7.8 | 0.03% | 2023-03-01 | 2024-11-21 |
| CVE-2023-0512 | Divide By Zero in GitHub repository vim/vim prior to 9.0.1247. | [email protected] | 7.8 | 0.03% | 2023-01-30 | 2024-11-21 |
| CVE-2023-0433 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1225. | [email protected] | 7.8 | 0.03% | 2023-01-21 | 2024-11-21 |
| CVE-2022-47024 | A null pointer dereference issue was discovered in function gui_x11_create_blank_mouse in gui_x11.c in vim 8.1.2269 thru 9.0.0339 allows attackers to cause denial of service or other unspecified impacts. | [email protected] | 7.8 | 0.05% | 2023-01-20 | 2025-04-03 |
| CVE-2023-0288 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1189. | [email protected] | 7.8 | 0.04% | 2023-01-13 | 2024-11-21 |
| CVE-2023-0054 | Out-of-bounds Write in GitHub repository vim/vim prior to 9.0.1145. | [email protected] | 7.8 | 0.02% | 2023-01-04 | 2025-11-03 |
| CVE-2023-0051 | Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1144. | [email protected] | 7.8 | 0.03% | 2023-01-04 | 2024-11-21 |
| CVE-2023-0049 | Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.1143. | [email protected] | 7.8 | 0.03% | 2023-01-04 | 2025-01-17 |
| CVE-2022-4293 | Floating Point Comparison with Incorrect Operator in GitHub repository vim/vim prior to 9.0.0804. | [email protected] | 5.5 | 0.26% | 2022-12-05 | 2024-11-21 |