#VU125867 Stack-based buffer overflow in ImageMagick
Published: April 14, 2026
ImageMagick
ImageMagick.org
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error when handling images. A remote attacker can pass a specially crafted image to the application, trigger a stack-based buffer overflow and execute arbitrary code on the target system.
Note, the vulnerability exists due to an incomplete fix for #VU123893 (CVE-2026-28690).