VulnSea

neovim has 12 CVEs on record between 2023 and 2024. The median CVSS is 7.8 (high). None have a confirmed exploitation report. The dominant weakness classes are CWE-416 (6) and CWE-122 (4).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.8
Publish → KEV
Last 90 days
0 prev 0

Products

  • neovim 12
12
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

neovim vulnerabilities

CVEs affecting neovim, newest first. Open any entry for full detail, references, and exploit status.

12 CVEsRSS

CVE-2024-41965Medium· 4.2
2y ago

Vim is an open source command line text editor

Vim is an open source command line text editor. double-free in dialog_changed() in Vim < v9.1.0648. When abandoning a buffer, Vim may ask the user what to do with the modified buffer. If the user wants the changed buffer to be saved, Vim…

Sunlitneovim · neovimEPSS 0.33%via NVD
CVE-2023-48706Low· 3.6
2y ago

Vim is a UNIX editor that, prior to version 9.0.2121, has a heap-use-after-free vulnerability

Vim is a UNIX editor that, prior to version 9.0.2121, has a heap-use-after-free vulnerability. When executing a `:s` command for the very first time and using a sub-replace-special atom inside the substitution part, it is possible that t…

Sunlitneovim · neovimEPSS 0.54%via NVD
CVE-2023-5535High· 7.8⚖ disputed
2y ago

Use After Free in GitHub repository vim/vim prior to v9.0.2010.

Use After Free in GitHub repository vim/vim prior to v9.0.2010.

Twilightneovim · neovimEPSS 0.54%via NVD
CVE-2023-4781High· 7.8
3y ago

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1873.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1873.

Twilightneovim · neovimEPSS 0.61%via NVD
CVE-2023-4752High· 7.8
3y ago

Use After Free in GitHub repository vim/vim prior to 9.0.1858.

Use After Free in GitHub repository vim/vim prior to 9.0.1858.

Twilightneovim · neovimEPSS 0.56%via NVD
CVE-2023-4750High· 7.8
3y ago

Use After Free in GitHub repository vim/vim prior to 9.0.1857.

Use After Free in GitHub repository vim/vim prior to 9.0.1857.

Twilightneovim · neovimEPSS 0.53%via NVD
CVE-2023-4733High· 7.8
3y ago

Use After Free in GitHub repository vim/vim prior to 9.0.1840.

Use After Free in GitHub repository vim/vim prior to 9.0.1840.

Twilightneovim · neovimEPSS 0.54%via NVD
CVE-2023-4751High· 7.8
3y ago

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1331.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1331.

Twilightneovim · neovimEPSS 0.56%via NVD
CVE-2023-4738High· 7.8
3y ago

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1848.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1848.

Twilightneovim · neovimEPSS 0.60%via NVD
CVE-2023-4734High· 7.8
3y ago

Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1846.

Integer Overflow or Wraparound in GitHub repository vim/vim prior to 9.0.1846.

Twilightneovim · neovimEPSS 0.58%via NVD
CVE-2023-1175Medium· 6.6
3y ago

Incorrect Calculation of Buffer Size in GitHub repository vim/vim prior to 9.0.1378.

Incorrect Calculation of Buffer Size in GitHub repository vim/vim prior to 9.0.1378.

Sunlitneovim · neovimEPSS 0.45%via NVD
CVE-2023-1170Medium· 6.6
3y ago

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1376.

Sunlitneovim · neovimEPSS 0.50%via NVD
neovim vulnerabilities (CVEs) · VulnSea