GHSA-2gmj-rpqf-pxvh mentions a wider range of affected versions

6 views
Skip to first unread message

Hritik Vijay

unread,
Mar 31, 2026, 3:39:31 AM (23 hours ago) Mar 31
to vim_dev
Hello

GHSA-2gmj-rpqf-pxvh mentions affected versions as < 9.2.0172, although since tabpanel was introduced in 9.1.1391 (https://github.com/vim/vim/commit/be5bd4d6292fddcc103091407792730aaa48cc48), the advisory should mention > 9.1.1391 and < 9.2.0172.

Tabpanel is a relatively new feature and a generic statement "vim < 9.2.0172 has code execution vulnerability" is misleading.

Christian Brabandt

unread,
Mar 31, 2026, 11:16:37 AM (16 hours ago) Mar 31
to vim...@googlegroups.com
Thanks. I updated the advisory.

Best,
Chris
Mit freundlichen Grüßen
Christian
--
I just had a NOSE JOB!!
Reply all
Reply to author
Forward
0 new messages