Published issues
Permalink
CVE-2026-25799
5.3 MEDIUM
-
CVSS version (CVSS): 3.1
-
Attack Vector (AV): Network (N)
-
Attack Complexity (AC): Low (L)
-
Privileges Required (PR): None (N)
-
User Interaction (UI): None (N)
-
Scope (S): Unchanged (U)
-
Confidentiality (C): None (N)
-
Integrity (I): None (N)
-
Availability (A): Low (L)
-
Modified Attack Vector (MAV): Network (N)
-
Modified Attack Complexity (MAC): Low (L)
-
Modified Privileges Required (MPR): None (N)
-
Modified User Interaction (MUI): None (N)
-
Modified Confidentiality (MC): None (N)
-
Modified Scope (MS): Unchanged (U)
-
Modified Integrity (MI): None (N)
-
Modified Availability (MA): Low (L)
updated
6 months, 3 weeks ago
by @LeSuisse
Activity log
-
Created suggestion
6 months, 3 weeks ago
-
@LeSuisse
ignored
3 packages
- tests.pkg-config.defaultPkgConfigPackages.ImageMagick
- tests.pkg-config.defaultPkgConfigPackages.MagickWand
- graphicsmagick-imagemagick-compat
6 months, 3 weeks ago
-
@LeSuisse
deleted
3 maintainers
- @dotlambda
- @rhendric
- @faukah
6 months, 3 weeks ago
maintainer.delete
-
@LeSuisse
accepted
6 months, 3 weeks ago
-
@LeSuisse
published on GitHub
6 months, 3 weeks ago
ImageMagick has Division-by-Zero in YUV sampling factor validation, which leads to crash
ImageMagick
-
==>= 7.0.0, < 7.1.2-15
-
==< 6.9.13-40
Permalink
CVE-2026-26066
6.2 MEDIUM
-
CVSS version (CVSS): 3.1
-
Attack Vector (AV): Local (L)
-
Attack Complexity (AC): Low (L)
-
Privileges Required (PR): None (N)
-
User Interaction (UI): None (N)
-
Scope (S): Unchanged (U)
-
Confidentiality (C): None (N)
-
Integrity (I): None (N)
-
Availability (A): High (H)
-
Modified Attack Vector (MAV): Local (L)
-
Modified Attack Complexity (MAC): Low (L)
-
Modified Privileges Required (MPR): None (N)
-
Modified User Interaction (MUI): None (N)
-
Modified Confidentiality (MC): None (N)
-
Modified Scope (MS): Unchanged (U)
-
Modified Integrity (MI): None (N)
-
Modified Availability (MA): High (H)
updated
6 months, 3 weeks ago
by @LeSuisse
Activity log
-
Created suggestion
6 months, 3 weeks ago
-
@LeSuisse
ignored
3 packages
- tests.pkg-config.defaultPkgConfigPackages.ImageMagick
- tests.pkg-config.defaultPkgConfigPackages.MagickWand
- graphicsmagick-imagemagick-compat
6 months, 3 weeks ago
-
@LeSuisse
deleted
3 maintainers
- @faukah
- @rhendric
- @dotlambda
6 months, 3 weeks ago
maintainer.delete
-
@LeSuisse
accepted
6 months, 3 weeks ago
-
@LeSuisse
published on GitHub
6 months, 3 weeks ago
ImageMagick has infinite loop when writing IPTCTEXT leads to denial of service via crafted profile
ImageMagick
-
==>= 7.0.0, < 7.1.2-15
-
==< 6.9.13-40
Permalink
CVE-2026-25797
5.7 MEDIUM
-
CVSS version (CVSS): 3.1
-
Attack Vector (AV): Local (L)
-
Attack Complexity (AC): Low (L)
-
Privileges Required (PR): None (N)
-
User Interaction (UI): None (N)
-
Scope (S): Changed (C)
-
Confidentiality (C): None (N)
-
Integrity (I): Low (L)
-
Availability (A): Low (L)
-
Modified Attack Vector (MAV): Local (L)
-
Modified Attack Complexity (MAC): Low (L)
-
Modified Privileges Required (MPR): None (N)
-
Modified User Interaction (MUI): None (N)
-
Modified Confidentiality (MC): None (N)
-
Modified Scope (MS): Changed (C)
-
Modified Integrity (MI): Low (L)
-
Modified Availability (MA): Low (L)
updated
6 months, 3 weeks ago
by @LeSuisse
Activity log
-
Created suggestion
6 months, 3 weeks ago
-
@LeSuisse
ignored
3 packages
- tests.pkg-config.defaultPkgConfigPackages.ImageMagick
- tests.pkg-config.defaultPkgConfigPackages.MagickWand
- graphicsmagick-imagemagick-compat
6 months, 3 weeks ago
-
@LeSuisse
deleted
3 maintainers
- @faukah
- @rhendric
- @dotlambda
6 months, 3 weeks ago
maintainer.delete
-
@LeSuisse
accepted
6 months, 3 weeks ago
-
@LeSuisse
published on GitHub
6 months, 3 weeks ago
ImageMagick vulnerable to Code injection via PostScript header in ps coders
ImageMagick
-
==>= 7.0.0, < 7.1.2-15
-
==< 6.9.13-40
Permalink
CVE-2026-25971
6.2 MEDIUM
-
CVSS version (CVSS): 3.1
-
Attack Vector (AV): Local (L)
-
Attack Complexity (AC): Low (L)
-
Privileges Required (PR): None (N)
-
User Interaction (UI): None (N)
-
Scope (S): Unchanged (U)
-
Confidentiality (C): None (N)
-
Integrity (I): None (N)
-
Availability (A): High (H)
-
Modified Attack Vector (MAV): Local (L)
-
Modified Attack Complexity (MAC): Low (L)
-
Modified Privileges Required (MPR): None (N)
-
Modified User Interaction (MUI): None (N)
-
Modified Confidentiality (MC): None (N)
-
Modified Scope (MS): Unchanged (U)
-
Modified Integrity (MI): None (N)
-
Modified Availability (MA): High (H)
updated
6 months, 3 weeks ago
by @LeSuisse
Activity log
-
Created suggestion
6 months, 3 weeks ago
-
@LeSuisse
ignored
3 packages
- tests.pkg-config.defaultPkgConfigPackages.ImageMagick
- tests.pkg-config.defaultPkgConfigPackages.MagickWand
- graphicsmagick-imagemagick-compat
6 months, 3 weeks ago
-
@LeSuisse
deleted
3 maintainers
- @faukah
- @rhendric
- @dotlambda
6 months, 3 weeks ago
maintainer.delete
-
@LeSuisse
accepted
6 months, 3 weeks ago
-
@LeSuisse
published on GitHub
6 months, 3 weeks ago
ImageMagick's MSL: Stack overflow in ProcessMSLScript
ImageMagick
-
==>= 7.0.0, < 7.1.2-15
-
==< 6.9.13-40
Permalink
CVE-2026-25576
5.1 MEDIUM
-
CVSS version (CVSS): 3.1
-
Attack Vector (AV): Local (L)
-
Attack Complexity (AC): High (H)
-
Privileges Required (PR): None (N)
-
User Interaction (UI): None (N)
-
Scope (S): Unchanged (U)
-
Confidentiality (C): High (H)
-
Integrity (I): None (N)
-
Availability (A): None (N)
-
Modified Attack Vector (MAV): Local (L)
-
Modified Attack Complexity (MAC): High (H)
-
Modified Privileges Required (MPR): None (N)
-
Modified User Interaction (MUI): None (N)
-
Modified Confidentiality (MC): High (H)
-
Modified Scope (MS): Unchanged (U)
-
Modified Integrity (MI): None (N)
-
Modified Availability (MA): None (N)
updated
6 months, 3 weeks ago
by @LeSuisse
Activity log
-
Created suggestion
6 months, 3 weeks ago
-
@LeSuisse
ignored
3 packages
- tests.pkg-config.defaultPkgConfigPackages.ImageMagick
- tests.pkg-config.defaultPkgConfigPackages.MagickWand
- graphicsmagick-imagemagick-compat
6 months, 3 weeks ago
-
@LeSuisse
deleted
3 maintainers
- @faukah
- @rhendric
- @dotlambda
6 months, 3 weeks ago
maintainer.delete
-
@LeSuisse
accepted
6 months, 3 weeks ago
-
@LeSuisse
published on GitHub
6 months, 3 weeks ago
ImageMagick: Out of bounds read in multiple coders read raw pixel data
ImageMagick
-
==>= 7.0.0, < 7.1.2-15
-
==< 6.9.13-40
Permalink
CVE-2026-25986
5.3 MEDIUM
-
CVSS version (CVSS): 3.1
-
Attack Vector (AV): Network (N)
-
Attack Complexity (AC): Low (L)
-
Privileges Required (PR): None (N)
-
User Interaction (UI): None (N)
-
Scope (S): Unchanged (U)
-
Confidentiality (C): None (N)
-
Integrity (I): None (N)
-
Availability (A): Low (L)
-
Modified Attack Vector (MAV): Network (N)
-
Modified Attack Complexity (MAC): Low (L)
-
Modified Privileges Required (MPR): None (N)
-
Modified User Interaction (MUI): None (N)
-
Modified Confidentiality (MC): None (N)
-
Modified Scope (MS): Unchanged (U)
-
Modified Integrity (MI): None (N)
-
Modified Availability (MA): Low (L)
updated
6 months, 3 weeks ago
by @LeSuisse
Activity log
-
Created suggestion
6 months, 3 weeks ago
-
@LeSuisse
ignored
3 packages
- tests.pkg-config.defaultPkgConfigPackages.ImageMagick
- tests.pkg-config.defaultPkgConfigPackages.MagickWand
- graphicsmagick-imagemagick-compat
6 months, 3 weeks ago
-
@LeSuisse
deleted
3 maintainers
- @faukah
- @rhendric
- @dotlambda
6 months, 3 weeks ago
maintainer.delete
-
@LeSuisse
accepted
6 months, 3 weeks ago
-
@LeSuisse
published on GitHub
6 months, 3 weeks ago
ImageMagick has a heap buffer overflow in YUV 4:2:2 decoder
ImageMagick
-
==>= 7.0.0, < 7.1.2-15
-
==< 6.9.13-40
Permalink
CVE-2026-27799
4.0 MEDIUM
-
CVSS version (CVSS): 3.1
-
Attack Vector (AV): Local (L)
-
Attack Complexity (AC): High (H)
-
Privileges Required (PR): None (N)
-
User Interaction (UI): None (N)
-
Scope (S): Unchanged (U)
-
Confidentiality (C): None (N)
-
Integrity (I): Low (L)
-
Availability (A): Low (L)
-
Modified Attack Vector (MAV): Local (L)
-
Modified Attack Complexity (MAC): High (H)
-
Modified Privileges Required (MPR): None (N)
-
Modified User Interaction (MUI): None (N)
-
Modified Confidentiality (MC): None (N)
-
Modified Scope (MS): Unchanged (U)
-
Modified Integrity (MI): Low (L)
-
Modified Availability (MA): Low (L)
updated
6 months, 3 weeks ago
by @LeSuisse
Activity log
-
Created suggestion
6 months, 3 weeks ago
-
@LeSuisse
ignored
3 packages
- tests.pkg-config.defaultPkgConfigPackages.ImageMagick
- tests.pkg-config.defaultPkgConfigPackages.MagickWand
- graphicsmagick-imagemagick-compat
6 months, 3 weeks ago
-
@LeSuisse
deleted
3 maintainers
- @faukah
- @dotlambda
- @rhendric
6 months, 3 weeks ago
maintainer.delete
-
@LeSuisse
accepted
6 months, 3 weeks ago
-
@LeSuisse
published on GitHub
6 months, 3 weeks ago
ImageMagick has a heap Buffer Over-read in its DJVU image format handler
ImageMagick
-
==>= 7.0.0, < 7.1.2-15
-
==< 6.9.13-40
Permalink
CVE-2026-27798
4.0 MEDIUM
-
CVSS version (CVSS): 3.1
-
Attack Vector (AV): Local (L)
-
Attack Complexity (AC): Low (L)
-
Privileges Required (PR): None (N)
-
User Interaction (UI): None (N)
-
Scope (S): Unchanged (U)
-
Confidentiality (C): Low (L)
-
Integrity (I): None (N)
-
Availability (A): None (N)
-
Modified Attack Vector (MAV): Local (L)
-
Modified Attack Complexity (MAC): Low (L)
-
Modified Privileges Required (MPR): None (N)
-
Modified User Interaction (MUI): None (N)
-
Modified Confidentiality (MC): Low (L)
-
Modified Scope (MS): Unchanged (U)
-
Modified Integrity (MI): None (N)
-
Modified Availability (MA): None (N)
updated
6 months, 3 weeks ago
by @LeSuisse
Activity log
-
Created suggestion
6 months, 3 weeks ago
-
@LeSuisse
ignored
3 packages
- graphicsmagick-imagemagick-compat
- tests.pkg-config.defaultPkgConfigPackages.MagickWand
- tests.pkg-config.defaultPkgConfigPackages.ImageMagick
6 months, 3 weeks ago
-
@LeSuisse
deleted
3 maintainers
- @faukah
- @rhendric
- @dotlambda
6 months, 3 weeks ago
maintainer.delete
-
@LeSuisse
accepted
6 months, 3 weeks ago
-
@LeSuisse
published on GitHub
6 months, 3 weeks ago
ImageMagick: Heap Buffer Over-read in WaveletDenoise when processing small images
ImageMagick
-
==>= 7.0.0, < 7.1.2-15
-
==< 6.9.13-40
Permalink
CVE-2026-24481
7.5 HIGH
-
CVSS version (CVSS): 3.1
-
Attack Vector (AV): Network (N)
-
Attack Complexity (AC): Low (L)
-
Privileges Required (PR): None (N)
-
User Interaction (UI): None (N)
-
Scope (S): Unchanged (U)
-
Confidentiality (C): High (H)
-
Integrity (I): None (N)
-
Availability (A): None (N)
-
Modified Attack Vector (MAV): Network (N)
-
Modified Attack Complexity (MAC): Low (L)
-
Modified Privileges Required (MPR): None (N)
-
Modified User Interaction (MUI): None (N)
-
Modified Confidentiality (MC): High (H)
-
Modified Scope (MS): Unchanged (U)
-
Modified Integrity (MI): None (N)
-
Modified Availability (MA): None (N)
updated
6 months, 3 weeks ago
by @LeSuisse
Activity log
-
Created suggestion
6 months, 3 weeks ago
-
@LeSuisse
deleted
3 maintainers
- @faukah
- @rhendric
- @dotlambda
6 months, 3 weeks ago
maintainer.delete
-
@LeSuisse
ignored
3 packages
- tests.pkg-config.defaultPkgConfigPackages.MagickWand
- graphicsmagick-imagemagick-compat
- tests.pkg-config.defaultPkgConfigPackages.ImageMagick
6 months, 3 weeks ago
-
@LeSuisse
accepted
6 months, 3 weeks ago
-
@LeSuisse
published on GitHub
6 months, 3 weeks ago
ImageMagick has Possible Heap Information Disclosure in PSD ZIP Decompression
ImageMagick
-
==>= 7.0.0, < 7.1.2-15
-
==< 6.9.13-40
Permalink
CVE-2026-25638
5.3 MEDIUM
-
CVSS version (CVSS): 3.1
-
Attack Vector (AV): Network (N)
-
Attack Complexity (AC): Low (L)
-
Privileges Required (PR): None (N)
-
User Interaction (UI): None (N)
-
Scope (S): Unchanged (U)
-
Confidentiality (C): None (N)
-
Integrity (I): None (N)
-
Availability (A): Low (L)
-
Modified Attack Vector (MAV): Network (N)
-
Modified Attack Complexity (MAC): Low (L)
-
Modified Privileges Required (MPR): None (N)
-
Modified User Interaction (MUI): None (N)
-
Modified Confidentiality (MC): None (N)
-
Modified Scope (MS): Unchanged (U)
-
Modified Integrity (MI): None (N)
-
Modified Availability (MA): Low (L)
updated
6 months, 3 weeks ago
by @LeSuisse
Activity log
-
Created suggestion
6 months, 3 weeks ago
-
@LeSuisse
deleted
3 maintainers
- @faukah
- @dotlambda
- @rhendric
6 months, 3 weeks ago
maintainer.delete
-
@LeSuisse
ignored
3 packages
- tests.pkg-config.defaultPkgConfigPackages.ImageMagick
- tests.pkg-config.defaultPkgConfigPackages.MagickWand
- graphicsmagick-imagemagick-compat
6 months, 3 weeks ago
-
@LeSuisse
accepted
6 months, 3 weeks ago
-
@LeSuisse
published on GitHub
6 months, 3 weeks ago
ImageMagick has memory leak in msl encoder
ImageMagick
-
==>= 7.0.0, < 7.1.2-15
-
==< 6.9.13-40