﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	severity	resolution	keywords	cc
22874	vim-9.2.0078 (Security update)	Bruce Dubbs	zeckma	An OS command injection vulnerability exists in the netrw standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using thescp:// protocol handler), an attacker can execute arbitrary shell commands with the privileges of the Vim process. 	enhancement	closed	elevated	13.0	BOOK	git	medium	fixed		
