CVE Notify
19.5K subscribers
4 photos
238K links
Alert on the latest CVEs

Partner channel: @malwr
Download Telegram
🚨 CVE-2022-44053
The d8s-networking for python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. A potential code execution backdoor inserted by third parties is the democritus-user-agents package. The affected version of d8s-htm is 0.1.0.

πŸŽ–@cveNotify
🚨 CVE-2022-0572
Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

πŸŽ–@cveNotify
🚨 CVE-2022-0685
Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4418.

πŸŽ–@cveNotify
🚨 CVE-2022-1616
Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protection Mechanism, Modify Memory, and possible remote execution

πŸŽ–@cveNotify
🚨 CVE-2022-1968
Use After Free in GitHub repository vim/vim prior to 8.2.

πŸŽ–@cveNotify
🚨 CVE-2022-1720
Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.

πŸŽ–@cveNotify