LOWVulnerability

CVE-2026-73074

Vim is an open source, command line text editor. Prior to 9.2.0841, prop_add_one() in src/textprop.c uses the proplen value from get_text_props() to increment a uint16_t property count beyond 0xffff, wrapping the count to zero and copying existing text-property records into a heap allocation sized for none of them. This issue is fixed in version 9.2.0841.

Properties

epss_score
0.00108
cve_id
CVE-2026-73074
published_at
2026-08-11T16:17:38.697
last_modified
2026-09-09T20:44:04.357
epss_percentile
0.01301

Related Entities (3)

ENRICHED_BY (1)

[Source]FIRST EPSS

HAS_WEAKNESS (1)

[Weakness]Integer Overflow or Wraparound

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-73074 — Ninja Signal Threat Intelligence | Ninja Signal