VYPR

NuGet package

magick.net-q16-x64

pkg:nuget/magick.net-q16-x64

Vulnerabilities (95)

  • CVE-2026-56368LowJun 24, 2026
    affected < 14.10.3fixed 14.10.3

    ImageMagick before 7.1.2-15 contains a memory leak vulnerability in multiple coders that write raw pixel data where allocated objects are not properly freed. Attackers can trigger this leak by processing specially crafted images, causing memory exhaustion and denial of service.

  • CVE-2026-47165MedJun 10, 2026
    affected < 14.12.0fixed 14.12.0

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, the distributed pixel cache was originally designed to operate without a challenge–response authentication model. This has been changed in vers

  • CVE-2026-46693MedJun 10, 2026
    affected < 14.12.0fixed 14.12.0

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can hijack a file descriptor in the server process when a race condition is m

  • CVE-2026-46559MedJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an incorrect check in the JP2 will result in an heap buffer over-write of a single byte when specifying certain options. This issue has been pa

  • CVE-2026-46557MedJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-23, due to a missing depth check a stack overflow can occur in the fx operation by passing a crafted argument. This issue has been patched in version 7.1.2-23.

  • CVE-2026-46521MedJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when using LZMA compression in the MIFF encoder an out of bounds write can occur due to a missing check. This issue has been patched in version

  • CVE-2026-46523MedJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, a crafted MSL image can trigger a heap-use-after-free. Versions 7.1.2.23 and 6.9.13-48 fix the issue.

  • CVE-2026-46522HigJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, due to a missing check in the MIFF decoder, a crafted file could cause an infinite loop resulting in CPU exhaustion. Versions 7.1.2.23 and 6.9.

  • CVE-2026-46520HigJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when reading multiple images with different dimensions an out of bounds heap write can occur. This issue has been patched in versions 6.9.13-48

  • CVE-2026-45664MedJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, because of a missing check in the MNG coder it would be possible to read more images than the list limit policy would allow resulting in excess

  • CVE-2026-45624MedJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when performing a polynomial distortion an out of bounds over-read of 24 bytes can occur when specifying specific arguments. This issue has bee

  • CVE-2026-45359MedJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-22, an invalid connected-components:keep-top value could result in a heap buffer over-read when performing the connected components operation. This

  • CVE-2026-45358MedJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, an off by one in the meta encoder could result in an out of bounds read of a single byte in the meta encoder. This issue has been patched in ve

  • CVE-2026-45031MedJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, due to a missing check in the PSD decoder it would be possible to bypass the list-length resource policy when decoding a PSD image. Other secur

  • CVE-2026-42326MedJun 10, 2026
    affected < 14.13.1fixed 14.13.1

    ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when writing an IPTC output file a malicious input file could cause an out of bounds read of a single byte. This issue has been patched in vers

  • CVE-2026-40312MedApr 13, 2026
    affected < 14.12.0fixed 14.12.0

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, an off by one error in the MSL decoder could result in a crash when a malicous MSL file is read. This issue has been fixed in version 7.1.2-19.

  • CVE-2026-40311MedApr 13, 2026
    affected < 14.12.0fixed 14.12.0

    ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below 7.1.2-19 and 6.9.13-44 contain a heap use-after-free vulnerability that can cause a crash when reading and printing values from an invalid XMP profile. This issue has bee

  • CVE-2026-40310MedApr 13, 2026
    affected < 14.12.0fixed 14.12.0

    ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below both 7.1.2-19 and 6.9.13-44, contain a heap out-of-bounds write in the JP2 encoder with when a user specifies an invalid sampling index. This issue has been fixed in vers

  • CVE-2026-40183MedApr 13, 2026
    affected < 14.12.0fixed 14.12.0

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, the JXL encoder has an heap write overflow when a user specifies that the image should be encoded as 16 bit floats. This issue has been fixed in version 7.1.

  • CVE-2026-40169MedApr 13, 2026
    affected < 14.12.0fixed 14.12.0

    ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, a crafted image could result in an out of bounds heap write when writing a yaml or json output, resulting in a crash. This issue has been fixed in version 7.

Page 1 of 5