CVE-2023-0049: Apple macOS

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.1143.

Affected products

  • Apple macOS: version 13.3 only
  • Fedoraproject Fedora: version 36 only; version 37 only
  • Neovim Neovim: from 0.1.0, before 0.10.0 (fixed in 0.10.0)
  • Netapp Hci Compute Node: affected versions not specified
  • Vim Vim: before 9.0.1143 (fixed in 9.0.1143)

Published 2023-01-04. Last modified 2026-09-24.