CVE-2023-0433: Apple macOS

High severity, CVSS 7.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1225.

Affected products

  • Apple macOS: before 11.7.5 (fixed in 11.7.5); from 12.0.0, before 12.6.4 (fixed in 12.6.4); from 13.0, before 13.3 (fixed in 13.3)
  • Fedoraproject Fedora: version 36 only; version 37 only
  • Neovim Neovim: from 0.1.0, before 0.8.3 (fixed in 0.8.3)
  • Vim Vim: before 9.0.1225 (fixed in 9.0.1225)

Published 2023-01-21. Last modified 2026-09-24.