Known vulnerabilities in ImageMagick - page 7

Software: ImageMagick
Software CPE: cpe:2.3:a:imagemagick_org:imagemagick:*:*:*:*:*:*:*:*
Website:
Total vulnerabilities: 536
Public exploits: 11
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting ImageMagick ImageMagick is affected by 536 known vulnerabilities: 1 critical, 84 high, 282 medium, 169 low Critical High Medium Low

Vulnerabilities (536)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU123608 - Improper Access Control
CVE-2026-25966
CWE-284 Low
No
No
6.9.13-40, 7.1.2-15 06.03.2026 SB2026030565
SB2026030639
SB2026030640
and 10 more
#VU123606 - Out-of-bounds write
CVE-2026-25986
CWE-787 Medium
No
No
6.9.13-40, 7.1.2-15 06.03.2026 SB2026030565
SB2026030625
SB2026030639
and 11 more
#VU123605 - Out-of-bounds read
CVE-2026-25987
CWE-125 Medium
No
No
6.9.13-40, 7.1.2-15 06.03.2026 SB2026030565
SB2026030625
SB2026030639
and 11 more
#VU123604 - NULL Pointer Dereference
CVE-2026-25798
CWE-476 Medium
No
No
6.9.13-40, 7.1.2-15 06.03.2026 SB2026030565
SB2026030639
SB2026030640
and 12 more
#VU123603 - Divide By Zero
CVE-2026-25799
CWE-369 Medium
No
No
6.9.13-40, 7.1.2-15 06.03.2026 SB2026030565
SB2026030639
SB2026030640
and 14 more
#VU123602 - Stack-based buffer overflow
CVE-2026-25967
CWE-121 High
No
No
6.9.13-40, 7.1.2-15 06.03.2026 SB2026030565
SB2026030639
SB2026030640
and 8 more
#VU123601 - Missing release of memory after effective lifetime
CVE-2026-25988
CWE-401 Medium
No
No
6.9.13-40, 7.1.2-15 06.03.2026 SB2026030565
SB2026030639
SB2026030640
and 12 more
#VU123600 - Stack-based buffer overflow
CVE-2026-25968
CWE-121 High
No
No
6.9.13-40, 7.1.2-15 06.03.2026 SB2026030565
SB2026030625
SB2026030639
and 10 more
#VU123599 - Missing release of memory after effective lifetime
CVE-2026-25638
CWE-401 Medium
No
No
6.9.13-40, 7.1.2-15 06.03.2026 SB2026030565
SB2026030639
SB2026030640
and 10 more
#VU123571 - Out-of-bounds read
CWE-125 Medium
No
No
6.9.13-40, 7.1.2-15 05.03.2026 SB2026030565
#VU123262 - Use After Free
CWE-416 Medium
No
No
6.9.13-40, 7.1.2-15 25.02.2026 SB2026022540
#VU123261 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-26283
CWE-835 Low
No
No
6.9.13-40, 7.1.2-15 25.02.2026 SB2026022540
SB2026030639
SB2026030640
and 7 more
#VU123260 - Out-of-bounds read
CWE-125 Medium
No
No
6.9.13-40, 7.1.2-15 25.02.2026 SB2026022540
#VU123259 - Resource exhaustion
CVE-2026-26066
CWE-400 Low
No
No
6.9.13-40, 7.1.2-15 25.02.2026 SB2026022540
SB2026030639
SB2026030640
and 12 more
#VU123258 - NULL Pointer Dereference
CVE-2026-26983
CWE-476 Medium
No
No
6.9.13-40, 7.1.2-15 25.02.2026 SB2026022540
SB2026030639
SB2026030640
and 10 more
#VU123257 - Allocation of Resources Without Limits or Throttling
CVE-2026-25985
CWE-770 Medium
No
No
6.9.13-40, 7.1.2-15 25.02.2026 SB2026022540
SB2026030639
SB2026030640
and 9 more
#VU123256 - Integer overflow
CVE-2026-25989
CWE-190 Medium
No
No
6.9.13-40, 7.1.2-15 25.02.2026 SB2026022540
SB2026030639
SB2026030640
and 9 more
#VU123255 - Heap-based Buffer Overflow
CVE-2026-25897
CWE-122 High
No
No
6.9.13-40, 7.1.2-15 25.02.2026 SB2026022540
SB2026030625
SB2026030957
and 5 more
#VU123254 - Improper Control of Generation of Code ('Code Injection')
CVE-2026-25797
CWE-94 High
No
No
6.9.13-51, 7.1.2-15 25.02.2026 SB2026022540
SB2026030639
SB2026030640
and 14 more
#VU123224 - Heap-based Buffer Overflow
CVE-2026-27799
CWE-122 Low
No
No
6.9.13-40, 7.1.2-15 25.02.2026 SB2026022540
SB2026030681
SB2026030957
and 7 more


Showing elements 121 - 140 out of 536