CVE-2026-33412 — Vim is an open source, command line text editor. Prior to version 9.2.0202, a command injection vulnerability exists in Vim's glob() function on Unix-like systems. By including a newline character — CVE Database · The Intelligence Room