VYPR
Low severity3.7NVD Advisory· Published Jul 11, 2026· Updated Jul 13, 2026

CVE-2026-61861

CVE-2026-61861

Description

ImageMagick before 7.1.2-26 contains a use-after-free vulnerability in the FormatMagickCaption method when memory allocation fails. Attackers can trigger memory allocation failures to cause a dangling pointer to reference freed memory, potentially enabling denial of service or code execution.

Affected products

5

Patches

Vulnerability mechanics

References

2

News mentions

1