Data Loss Vulnerability in Vim Text Editor
CVE-2025-29768
4.4MEDIUM
What is CVE-2025-29768?
The Vim text editor is susceptible to potential data loss when handling specially crafted zip files in the zip.vim plugin. Users of versions prior to 9.1.1198 are advised to be cautious, as invoking these crafted zip files requires the user to open them in Vim and execute the 'x' command on suspicious filenames. This vulnerability has been addressed in patch 9.1.1198, which provides necessary protections against such exploits.
Affected Version(s)
vim < 9.1.1198