CVE-2026-46483 | vim up to 9.2.0478 Archive File runtime/autoload/tar.vim Vimuntar os command injection (GHSA-2fpv-9ff7-xg5w / Nessus ID 318124)
A vulnerability classified as critical was found in vim up to 9.2.0478. Impacted is the function Vimuntar of the file runtime/autoload/tar.vim of the component Archive File Handler. The manipulation results in os command injection.
This vulnerability is reported as CVE-2026-46483. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.