Bram Moolenaar
126 exploits
Active since Feb 2017
Vim < 8.1.1365 and Neovim < 0.3.6 - OS Command Injection via Modeline :source! Command
CVSS 8.6
vim/vim <9.0.0061 - Buffer Overflow
CVSS 7.8
Vim < 8.0.1263 - Unauthorized File Permission Exposure via .swp File Group Ownership
CVSS 5.5
vim < 8.0.0055 - Integer Overflow and Buffer Overflow via Spell File Tree Length
CVSS 9.8
vim < 8.0.0376 - Integer Overflow in Undo File Processing
CVSS 9.8
vim < 8.0.0377 - Integer Overflow via Undo File Deserialization
CVSS 9.8
libvterm < 0+bzr726 - Denial of Service via Out-of-Memory Condition
CVSS 7.5
Vim 8.1.2121-8.1.2135 - Use-After-Free in Autocmd Feature
CVSS 7.8
vim < 8.1.0881 - OS Command Injection via Scripting Interfaces
CVSS 5.3
vim < 8.2.3408 - Heap-based Buffer Overflow
CVSS 7.8
vim < 8.2.3409 - Heap-based Buffer Overflow
CVSS 7.8
vim < 8.2.3428 - Use-After-Free
CVSS 7.3
vim < 8.2.3487 - Heap-based Buffer Overflow
CVSS 7.8
vim < 8.2.3489 - Heap-based Buffer Overflow
CVSS 5.5
vim < 8.2.3564 - Heap-based Buffer Overflow
CVSS 7.8
vim < 8.2.3581 - Heap-based Buffer Overflow
CVSS 7.8
vim < 8.2.3582 - Use of Uninitialized Variable
CVSS 7.8
vim 8.2.3430-8.2.3610 - Heap-based Buffer Overflow
CVSS 8.0
vim < 8.2.3611 - Heap-based Buffer Overflow
CVSS 7.8
vim < 8.2.3612 - Use-After-Free
CVSS 7.8
vim < 8.2.3625 - Heap-based Buffer Overflow
CVSS 7.8
vim < 8.2.3847 - Heap-based Buffer Overflow
CVSS 7.8
vim < 8.2.3884 - Out-of-bounds Read
CVSS 7.1
vim < 8.2.3902 - Use-After-Free
CVSS 7.8
vim < 8.2.3912 - Use-After-Free
CVSS 7.8