CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
500f, 500f_firmware, 7-mode_transition_tool, 8300, 8300_firmware, 8700, 8700_firmware, A220, A220_firmware, A250, Gvim, Netrw, Tar.vim, Zipplugin.vim
2023-02-03
N/A
7.8 HIGH
Use After Free in GitHub repository vim/vim prior to 9.0.0882.
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1189.
2023-02-13
N/A
9.8 CRITICAL
vBulletin before 5.6.9 PL1 allows an unauthenticated remote attacker to execute arbitrary code via a crafted HTTP request that triggers deserialization. This occurs because verify_serialized checks that a value is serialized by calling unserialize and then checking for errors. The fixed versions are 5.6.7 PL1, 5.6.8 PL1, and 5.6.9 PL1.