CVE-2026-73075: Vim
Low severity, CVSS 3.9. EPSS: 0.1% chance of exploitation in the next 30 days.
Vim is an open source, command line text editor. From 9.2.0469 until 9.2.0843, popup_mark_opacity_zindex() in src/popupwin.c can use a negative w_winrow for a text-property-anchored popup with clipwindow and opacity, indexing before the screen array instead of accounting for w_popup_topoff and causing an out-of-bounds read and conditional write. This issue is fixed in version 9.2.0843.
Affected products
- Vim Vim: from 9.2.0469, before 9.2.0843 (fixed in 9.2.0843)
Published 2026-08-11. Last modified 2026-10-06.