Control: tags -1 + moreinfo Hi,
On Wed, 2026-08-12 at 09:06 -0400, James McCoy wrote: > Neovim versions >= 0.9 added a vim.secure module to manage trust when > automatically sourcing files from a directory. The vim.secure.read() > API, used to read those files, was subject to command injection > (CVE-2026-11487). The debdiff appears to be missing. Regards, Adam

