CVE-2023-5535High· 7.8▾ TwilightUse After Free in GitHub repository vim/vim prior to v9.0.2010.
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 42.9 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 17.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.5%
Use After Free in GitHub repository vim/vim prior to v9.0.2010.
neovim <= 0.9.5vim < 9.0.2010fedora = 37fedora = 38fedora = 39Upgrade past the affected range:
vim 9.0.2010Connected by shared product, vendor, weakness, or advisory.
CVE-2024-41965Medium· 4.2Vim is an open source command line text editor
CVE-2023-4752High· 7.8Use After Free in GitHub repository vim/vim prior to 9.0.1858.
CVE-2023-48706Low· 3.6Vim is a UNIX editor that, prior to version 9.0.2121, has a heap-use-after-free vulnerability
CVE-2023-4750High· 7.8Use After Free in GitHub repository vim/vim prior to 9.0.1857.
CVE-2023-4733High· 7.8Use After Free in GitHub repository vim/vim prior to 9.0.1840.
CVE-2025-40149Medium· 5.0kernel: tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock() (CVE-2025-40149)