| CVE-2026-27799 |
|
Medium |
Feb 26, 2026 |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer
more...
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer over-read vulnerability exists in the DJVU image format handler. The vulnerability occurs due to integer truncation when calculating the stride (row size) for pixel buffer allocation. The stride calculation overflows a 32-bit signed integer, resulting in an out-of-bounds memory reads. Versions 7.1.2-15 and 6.9.13-40 contain a patch.
less...
|
7.1.1.40, 7.1.1.37, 7.1.1.35, 6.9.13.12, 7.1.1.34, 7.1.1.14, 7.1.1.13, 7.1.1.12, 7.1.1.10, 7.1.1.9
|
| CVE-2026-27798 |
|
High |
Feb 26, 2026 |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer
more...
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer over-read vulnerability occurs when processing an image with small dimension using the `-wavelet-denoise` operator. Versions 7.1.2-15 and 6.9.13-40 contain a patch.
less...
|
7.1.1.40, 7.1.1.37, 7.1.1.35, 6.9.13.12, 7.1.1.34, 7.1.1.14, 7.1.1.13, 7.1.1.12, 7.1.1.10, 7.1.1.9
|
| CVE-2026-26983 |
|
Medium |
Feb 24, 2026 |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, the MSL interp
more...
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, the MSL interpreter crashes when processing a invalid `` element that causes it to use an image after it has been freed. Versions 7.1.2-15 and 6.9.13-40 contain a patch.
less...
|
7.1.1.40, 7.1.1.37, 7.1.1.35, 6.9.13.12, 7.1.1.34, 7.1.1.14, 7.1.1.13, 7.1.1.12, 7.1.1.10, 7.1.1.9
|
| CVE-2026-26284 |
|
Critical |
Feb 24, 2026 |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, ImageMagick la
more...
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, ImageMagick lacks proper boundary checking when processing Huffman-coded data from PCD (Photo CD) files. The decoder contains an function that has an incorrect initialization that could cause an out of bounds read. Versions 7.1.2-15 and 6.9.13-40 contain a patch.
less...
|
7.1.1.40, 7.1.1.37, 7.1.1.35, 6.9.13.12, 7.1.1.34, 7.1.1.14, 7.1.1.13, 7.1.1.12, 7.1.1.10, 7.1.1.9
|
| CVE-2026-26283 |
|
High |
Feb 24, 2026 |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a `continue` s
more...
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a `continue` statement in the JPEG extent binary search loop in the jpeg encoder causes an infinite loop when writing persistently fails. An attacker can trigger a 100% CPU consumption and process hang (Denial of Service) with a crafted image. Versions 7.1.2-15 and 6.9.13-40 contain a patch.
less...
|
7.1.1.40, 7.1.1.37, 7.1.1.35, 6.9.13.12, 7.1.1.34, 7.1.1.14, 7.1.1.13, 7.1.1.12, 7.1.1.10, 7.1.1.9
|
| CVE-2026-26066 |
|
High |
Feb 24, 2026 |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a crafted prof
more...
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a crafted profile contain invalid IPTC data may cause an infinite loop when writing it with `IPTCTEXT`. Versions 7.1.2-15 and 6.9.13-40 contain a patch.
less...
|
7.1.1.40, 7.1.1.37, 7.1.1.35, 6.9.13.12, 7.1.1.34, 7.1.1.14, 7.1.1.13, 7.1.1.12, 7.1.1.10, 7.1.1.9
|
| CVE-2026-25989 |
|
High |
Feb 24, 2026 |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a crafted SVG
more...
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a crafted SVG file can cause a denial of service. An off-by-one boundary check (`>` instead of `>=`) that allows bypass the guard and reach an undefined `(size_t)` cast. Versions 7.1.2-15 and 6.9.13-40 contain a patch.
less...
|
7.1.1.40, 7.1.1.37, 7.1.1.35, 6.9.13.12, 7.1.1.34, 7.1.1.14, 7.1.1.13, 7.1.1.12, 7.1.1.10, 7.1.1.9
|
| CVE-2026-25988 |
|
High |
Feb 24, 2026 |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, sometimes msl.
more...
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, sometimes msl.c fails to update the stack index, so an image is stored in the wrong slot and never freed on error, causing leaks. Versions 7.1.2-15 and 6.9.13-40 contain a patch.
less...
|
7.1.1.40, 7.1.1.37, 7.1.1.35, 6.9.13.12, 7.1.1.34, 7.1.1.14, 7.1.1.13, 7.1.1.12, 7.1.1.10, 7.1.1.9
|
| CVE-2026-25987 |
|
Critical |
Feb 24, 2026 |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer
more...
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer over-read vulnerability exists in the MAP image decoder when processing crafted MAP files, potentially leading to crashes or unintended memory disclosure during image decoding. Versions 7.1.2-15 and 6.9.13-40 contain a patch.
less...
|
7.1.1.40, 7.1.1.37, 7.1.1.35, 6.9.13.12, 7.1.1.34, 7.1.1.14, 7.1.1.13, 7.1.1.12, 7.1.1.10, 7.1.1.9
|
| CVE-2026-25986 |
|
Critical |
Feb 24, 2026 |
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer
more...
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer overflow write vulnerability exists in ReadYUVImage() (coders/yuv.c) when processing malicious YUV 4:2:2 (NoInterlace) images. The pixel-pair loop writes one pixel beyond the allocated row buffer. Versions 7.1.2-15 and 6.9.13-40 contain a patch.
less...
|
7.1.1.40, 7.1.1.37, 7.1.1.35, 6.9.13.12, 7.1.1.34, 7.1.1.14, 7.1.1.13, 7.1.1.12, 7.1.1.10, 7.1.1.9
|