macvim-dev / macvim-dev/macvim

Multiple CVEs (fixed in vim 9.2.0933+)

Open
#1,695 0 comments 3 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
Vim Script
Stars
7.9k
Forks
691
PR merge metrics
No merged PRs in 30d

Description

Can you resync with vim to close
2026-59857
2026-55895
2026-5569[23]
2026-5745[1-6]
2026-7307[01678]

fixed in vim 9.2.0933 or later

Could you confirm whether these fixes were backported to MacVim, or whether an updated release is planned?

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

No files or tests are named. Start by comparing MacVim's bundled Vim version with upstream Vim 9.2.0933 or later, then check whether the listed CVE fixes are present; done means the fixes are resynced or the issue clearly records their backport and release status.

Written by the indexing model from the issue text.

Assessment

Tech stack
macos, vim
Domain
desktop, security
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Quiet
Clarity
Mostly clear
Newbie friendliness
45/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.