Use After Free in GitHub repository vim/vim prior to 9.0.1857. https://huntr.dev/bounties/1ab3ebdf-fe7d-4436-b483-9a586e03b0ea https://github.com/vim/vim/commit/fc68299d436cf87453e432daa77b6d545df4d7ed
Red Hat Product Security has rated this issue as having a Low security impact, because the "victim" has to run an untrusted file IN SCRIPT MODE. Someone who is running untrusted files in script mode is equivalent to someone just taking a random python script and running it.
Created vim tracking bugs for this issue: Affects: fedora-all [bug 2237435]