VYPR
Vendor

Sublimetext

Products
1
CVEs
4
Across products
4
Status
Private

Products

1

Recent CVEs

4
  • CVE-2024-25255CriNov 11, 2024
    risk 0.64cvss 9.8epss 0.01

    Sublime Text 4 was discovered to contain a command injection vulnerability via the New Build System module. NOTE: multiple third parties report that this is intended behavior.

  • CVE-2019-9116HigFeb 25, 2019
    risk 0.51cvss 7.8epss 0.01

    DLL hijacking is possible in Sublime Text 3 version 3.1.1 build 3176 on 32-bit Windows platforms because a Trojan horse api-ms-win-core-fibers-l1-1-1.dll or api-ms-win-core-localization-l1-2-1.dll file may be loaded if a victim uses sublime_text.exe to open a .txt file within an…

  • CVE-2017-8368HigJul 5, 2017
    risk 0.51cvss 7.8epss 0.01

    Sublime Text 3 Build 3126 allows user-assisted attackers to cause a denial of service or possibly have unspecified other impact via a crafted .mkv file. One threat model is a victim who obtains an untrusted crafted file from a remote location and issues several user-defined…

  • CVE-2025-65741Dec 9, 2025
    risk 0.00cvss epss 0.00

    Sublime Text 3 Build 3208 or prior for MacOS is vulnerable to Dylib Injection. An attacker could compile a .dylib file and force the execution of this library in the context of the Sublime Text application.