vim_regexec_string of the file regexp.c. Such manipulation leads to null pointer dereference.This vulnerability is traded as CVE-2022-1674. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.