Medium severity6.2NVD Advisory· Published Oct 8, 2026
CVE-2026-105403
CVE-2026-105403
Description
ImageMagick before 6.9.13-56 and 7.x before 7.1.2-31 allows a security policy bypass when a policy uses coder, rather than module, as its domain. An attacker can supply a crafted image to evade coder-based policy restrictions, causing ImageMagick to process formats the administrator intended to block.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <6.9.13-56, <7.1.2-31
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.