Vulnerabilities > Apple > Macos > High

DATE CVE VULNERABILITY TITLE RISK
2022-05-10 CVE-2022-1621 Heap-based Buffer Overflow vulnerability in multiple products
Heap buffer overflow in vim_strncpy find_word in GitHub repository vim/vim prior to 8.2.4919.
local
low complexity
vim debian fedoraproject apple CWE-122
7.8
2022-05-10 CVE-2022-1629 Buffer Over-read vulnerability in multiple products
Buffer Over-read in function find_next_quote in GitHub repository vim/vim prior to 8.2.4925.
local
low complexity
vim fedoraproject apple CWE-126
7.8
2022-05-09 CVE-2022-28739 Out-of-bounds Read vulnerability in multiple products
There is a buffer over-read in Ruby before 2.6.10, 2.7.x before 2.7.6, 3.x before 3.0.4, and 3.1.x before 3.1.2.
network
low complexity
ruby-lang debian apple CWE-125
7.5
2022-05-08 CVE-2022-1620 NULL Pointer Dereference vulnerability in multiple products
NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in GitHub repository vim/vim prior to 8.2.4901.
network
low complexity
vim fedoraproject apple CWE-476
7.5
2022-05-08 CVE-2022-1619 Heap-based Buffer Overflow vulnerability in multiple products
Heap-based Buffer Overflow in function cmdline_erase_chars in GitHub repository vim/vim prior to 8.2.4899.
local
low complexity
vim fedoraproject debian netapp apple CWE-122
7.8
2022-05-07 CVE-2022-1616 Use After Free vulnerability in multiple products
Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895.
local
low complexity
vim fedoraproject debian apple CWE-416
7.8
2022-04-18 CVE-2022-29458 Out-of-bounds Read vulnerability in multiple products
ncurses 6.3 before patch 20220416 has an out-of-bounds read and segmentation violation in convert_strings in tinfo/read_entry.c in the terminfo library.
local
low complexity
gnu apple debian CWE-125
7.1
2022-04-18 CVE-2022-1381 Heap-based Buffer Overflow vulnerability in multiple products
global heap buffer overflow in skip_range in GitHub repository vim/vim prior to 8.2.4763.
local
low complexity
vim fedoraproject apple CWE-122
7.8
2022-04-12 CVE-2022-24070 Use After Free vulnerability in multiple products
Subversion's mod_dav_svn is vulnerable to memory corruption.
network
low complexity
apache debian fedoraproject apple CWE-416
7.5
2022-04-11 CVE-2022-24836 Nokogiri is an open source XML and HTML library for Ruby.
network
low complexity
nokogiri fedoraproject debian apple
7.5