CVE-2026-41411 | vim up to 9.2.0356 Command Line os command injection (GHSA-cwgx-gcj7-6qh8)
A vulnerability was found in vim up to 9.2.0356. It has been classified as critical. The affected element is an unknown function of the component Command Line Handler. This manipulation causes os command injection.
This vulnerability is tracked as CVE-2026-41411. The attack is restricted to local execution. No exploit exists.
Upgrading the affected component is recommended.