Threats Tagged 'cve-2026-41411'
View all threats tagged with 'cve-2026-41411'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-41411'
Click on any threat for detailed analysis and mitigation recommendations
0 Vim (Vi IMproved) is an updated and improved version of the vi editor. Security Fix(es): * vim: arbitrary command execution via modeline sandbox bypass (CVE-2026-34982) * vim: zip.vim: Vim zip.vim plugin: Arbitrary file overwrite via path traversal bypass (CVE-2026-35177) * vim: Vim: Command injection allows arbitrary code execution via malicious tag files (CVE-2026-41411) * vim: command injection when decompressing .tgz archives (CVE-2026-46483) * vim: Vim: Arbitrary Code Execution via crafted directory names (CVE-2026-47162) * vim: Vim: Arbitrary code execution via Python omni-completion (CVE-2026-52858) * vim: Vim: Arbitrary code execution via crafted step-definition patterns (CVE-2026-47167) * vim: Vim: Denial of Service via stack out-of-bounds write in spell_soundfold_sofo() (CVE-2026-57455) * vim: Vim: Arbitrary code execution via malicious docstrings in Python omni-completion (CVE-2026-57456) * vim: Vim: Out-of-bounds Write in Spell File Word Count (CVE-2026-55693) * vim: Vim: Arbitrary command execution via crafted tags file in C omni-completion (CVE-2026-59858) * vim: Vim: Arbitrary command execution via crafted vimball (CVE-2026-73076) * vim: Vim: Heap buffer overflow allows arbitrary code execution (CVE-2026-73072) * vim: Vim: Arbitrary Code Execution via Crafted Netrw Menu Entries (CVE-2026-73078) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 09/17/2026, 20:06:33 UTC Added: 05/27/2026, 21:15:26 UTC |
0 This advisory addresses a use-after-free vulnerability (CVE-2025-11234) in the qemu-kvm component of Red Hat Enterprise Linux 9, which is part of the Red Hat OpenShift Container Platform 4.12. The vulnerability affects the VNC WebSocket handshake implementation. Red Hat has released an update to fix this issue. No known exploits are reported in the wild. Users of affected versions are advised to apply the update via the official Red Hat channels. Join the discussion | GCVE Database | 09/03/2026, 12:01:51 UTC Added: 07/12/2026, 09:18:51 UTC |
0 Technology Preview features are not fully supported, may not be functionally complete, and are not suitable for deployment in production. Join the discussion | GCVE Database | 08/24/2026, 11:15:22 UTC Added: 06/22/2026, 15:51:33 UTC |
0 Vim (Vi IMproved) is an updated and improved version of the vi editor. Security Fix(es): * vim: Vim: Command injection allows arbitrary code execution via malicious tag files (CVE-2026-41411) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 06/23/2026, 23:12:50 UTC Added: 06/23/2026, 15:54:28 UTC |
0 A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to missing SMB-layer access checks, authenticated users with underlying filesystem write permissions may create or delete reparse point metadata through SMB operations even on read-only exports. This could allow modification of SMB-visible file behavior, including converting files into symbolic links or other reparse point types. Join the discussion | GCVE Database | 05/27/2026, 15:33:10 UTC Added: 06/04/2026, 21:16:09 UTC |
0 A stack buffer overflow was found in Internationl components for unicode (ICU ). While running the genrb binary, the 'subtag' struct overflowed at the SRBRoot::addTag function. This issue may lead to memory corruption and local arbitrary code execution. Join the discussion | GCVE Database | 05/27/2025, 21:32:17 UTC Added: 06/25/2026, 21:47:18 UTC |
Showing 1 to 6 of 6 results