ZeroHour

CVE-2026-45664

CVSS 3.1
5.3 medium
EPSS
<1%p37
Published
()
Modified
Description

ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, because of a missing check in the MNG coder it would be possible to read more images than the list limit policy would allow resulting in excessive resource use. This issue has been patched in versions 6.9.13-47 and 7.1.2-22.

Vendors
imagemagick
Products
imagemagick
Weakness
CWE-400, CWE-407, CWE-674, CWE-770
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.