VYPR
Low severity3.3OSV Advisory· Published Jul 8, 2026· Updated Jul 9, 2026

CVE-2026-56374

CVE-2026-56374

Description

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remote attackers can trigger an out of bounds read by crafting malicious FTXT image files to cause denial of service or information disclosure.

Affected products

6

Patches

Vulnerability mechanics

References

2

News mentions

1