Arbitrary code execution when using treesitter with injections
Neovim security advisories
All 1 advisories Neovim has published with an identifier, newest first. Severity is the one its publisher assigned, and the fix is the release the publisher named. Nothing on this page is our judgement.
- Advisories
- 10 carry a CVE
- medium
- 1
- Fix in the archive
- 1of 1 matched to a release
- Oldest
- 10 Feb 20233.6 years ago
Every advisory here is matched to the release in the archive that carries its fix. This page is a copy of what the publisher published, kept for reference. The authoritative source for a security question is the publisher, and an advisory missing from here is not evidence that none exists. What this page does and does not tell you sets out the limits in full.