CVE-2023-4750
Executive Summary
CVE-2023-4750 is a use‑after‑free flaw in Vim (versions <9.0.1857) that can lead to memory corruption and potentially arbitrary code execution when processing maliciously crafted input. The vulnerability is triggered during buffer handling and can be exploited by local or remote users with sufficient privileges. No CISA KEV listing yet, but the issue is publicly disclosed and mitigated by updating to Vim 9.0.1857 or later.
Authoritative CVE Metadata - CVSS Base Score: 7.8 (HIGH) - Published: 2023-09-04T14:15:08.263 - Last Modified: 2026-09-17T17:58:55.230
Original Description: Use After Free in GitHub repository vim/vim prior to 9.0.1857.
"Do not be embarrassed by your mistakes. Nothing can teach us better than our understanding of them. This is one of the best ways of self-education."
— Thomas Carlyle