Vulnerability index

Browse CVEs

492 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Imagemagick MEDIUM 5.3
CVE-2026-64685

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-27, the BGR decoder does no…

Fix: 7.1.2-27+
Fix from $1,600 2026-07-30
Imagemagick MEDIUM 5.0
CVE-2026-62363

ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-27, a heap buffer over-writ…

Fix: 7.1.2-27+
Fix from $1,600 2026-07-30
Imagemagick HIGH 7.5
CVE-2026-61866

ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the JNG encoder when a blob cannot be opened. Attackers can trigger the memory le…

Fix: 7.1.2-26+
Fix from $1,950 2026-07-15
Imagemagick HIGH 7.5
CVE-2026-61863

ImageMagick before 7.1.2-26 (and 6.x before 6.9.13-51) contains a memory leak in the TIFF encoder that occurs when a temporary file cannot be created…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,950 2026-07-15
Imagemagick HIGH 7.5
CVE-2026-61861

ImageMagick before 7.1.2-26 contains a use-after-free vulnerability in the FormatMagickCaption method when memory allocation fails. Attackers can tri…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,950 2026-07-11
Imagemagick HIGH 7.5
CVE-2026-61870

ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the VIFF encoder when memory allocation fails. Attackers can trigger allocation f…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,950 2026-07-11
Imagemagick MEDIUM 5.3
CVE-2026-61858

ImageMagick before 7.1.2-26 contains a policy bypass vulnerability in the APNG encoder and external delegates due to missing validation checks. Attac…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,600 2026-07-11
Imagemagick HIGH 7.5
CVE-2026-61857

ImageMagick before 7.1.2-26 contains a heap use-after-free vulnerability caused by missing null check when parsing XMP profiles. Attackers can craft …

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,950 2026-07-11
Imagemagick MEDIUM 6.5
CVE-2026-61465

ImageMagick before 7.1.2-26 and 6.9.13-51 is missing a check for the allowed memory allocation limit in matrix-backed operations such as -canny. An a…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,600 2026-07-11
Imagemagick CRITICAL 9.1
CVE-2026-56372

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the magnify operation that allows attackers to read out of bounds memory…

Fix: 7.1.2-19+
Fix from $2,300 2026-07-11
Imagemagick MEDIUM 6.5
CVE-2026-56366

ImageMagick before 7.1.2-18 contains a memory leak vulnerability in the META reader when processing APP1JPEG input paths. Attackers can trigger this …

Fix: 6.9.13-43 / 7.1.2-18+
Fix from $1,600 2026-07-10
Imagemagick MEDIUM 5.3
CVE-2026-56373

ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in the PDB decoder that uses a stale pointer when memory allocation fails. Attack…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,600 2026-07-10
Imagemagick HIGH 7.1
CVE-2026-56374

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format…

Fix: 7.1.2-19+
Fix from $1,950 2026-07-08
Imagemagick HIGH 8.1
CVE-2026-56362

ImageMagick before 7.1.2-15 contains a heap-buffer-overflow read vulnerability in GetPixelIndex caused by OpenPixelCache updating image channel metad…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-07-08
Imagemagick MEDIUM 5.5
CVE-2026-55597

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-26, an incorrect handling of ar…

Fix: 7.1.2-26+
Fix from $1,600 2026-07-01
Imagemagick MEDIUM 5.3
CVE-2026-55594

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-51 and 7.1.2-26, a missing de…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,600 2026-07-01
Imagemagick MEDIUM 6.5
CVE-2026-53466

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-51 and 7.1.2-26, an integer o…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,600 2026-07-01
Imagemagick MEDIUM 5.9
CVE-2026-55577

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-51 and 7.1.2-26, a heap buffe…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,600 2026-07-01
Imagemagick MEDIUM 5.5
CVE-2026-55510

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-51 and 7.1.2-26, when identif…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,600 2026-07-01
Imagemagick MEDIUM 5.3
CVE-2026-53467

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-51 and 7.1.2-26, the MNG deco…

Fix: 6.9.13-51 / 7.1.2-26+
Fix from $1,600 2026-07-01
Imagemagick HIGH 7.1
CVE-2026-56361

ImageMagick before 7.1.2-19 contains an off-by-one error in morphology validation allowing out-of-bounds heap buffer reads. Attackers can trigger hea…

Fix: 6.9.13-44 / 7.1.2-19+
Fix from $1,950 2026-06-30
Imagemagick MEDIUM 5.3
CVE-2026-56365

ImageMagick before 7.1.2-19 contains a memory leak vulnerability in the PNG encoder when writing MNG images. Attackers can trigger the encoder failur…

Fix: 6.9.13-44 / 7.1.2-19+
Fix from $1,600 2026-06-30
Imagemagick HIGH 7.8
CVE-2026-56370

ImageMagick before 7.1.2-19 contains an out-of-bounds access vulnerability in ConnectedComponentsImage() when processing connected-components artifac…

Fix: 6.9.13-44 / 7.1.2-19+
Fix from $1,950 2026-06-24
Imagemagick HIGH 7.5
CVE-2026-56368

ImageMagick before 7.1.2-15 contains a memory leak vulnerability in multiple coders that write raw pixel data where allocated objects are not properl…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-06-24
Imagemagick HIGH 8.1
CVE-2026-56379

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-06-23
Imagemagick MEDIUM 5.3
CVE-2026-56371

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a memory leak in coders/txt.c when processing TXT files with texture attributes: the texture objec…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,600 2026-06-23
Imagemagick CRITICAL 9.1
CVE-2026-56367

ImageMagick before 7.1.2-15 and 6.9.x before 6.9.13-40 contains an integer overflow in the PSB (PSD v2) RLE decoding path (ReadPSDChannelRLE in coder…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $2,300 2026-06-21
Imagemagick HIGH 8.2
CVE-2026-56378

ImageMagick before 7.1.2-15 (and 6.x before 6.9.13-40) contains a heap out-of-bounds read in the PCD coder's DecodeImage loop. A crafted PCD file can…

Fix: 6.9.13-40 / 7.1.2-15+
Fix from $1,950 2026-06-21
Imagemagick HIGH 7.5
CVE-2026-53460

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, a missing ch…

Fix: 6.9.13-50 / 7.1.2-25+
Fix from $1,950 2026-06-10
Imagemagick HIGH 7.5
CVE-2026-53461

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-50 and 7.1.2-25, an incorrect…

Fix: 6.9.13-50 / 7.1.2-25+
Fix from $1,950 2026-06-10