CVE-2026-28422 | vim up to 9.2.0077 build_stl_str_hl stack-based overflow (GHSA-gmqx-prf2-8mwf / EUVD-2026-9090)
A vulnerability, which was classified as critical, has been found in vim up to 9.2.0077. This affects the function build_stl_str_hl. The manipulation leads to stack-based buffer overflow.
This vulnerability is documented as CVE-2026-28422. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.