Known Vulnerabilities for ImageMagick by ImageMagick
Listed below are 10 of the newest known vulnerabilities associated with "ImageMagick" by "ImageMagick".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-102635 json | ImageMagick versions before 7.1.2-32 and 6.9.13-57 contain uninitialized heap memory disclosure in the GIF decoder's applicat... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-93590 json | ImageMagick before 7.1.2-31 contains a policy bypass vulnerability in the UHDR encoder that fails to perform policy checks du... | Not Provided | 2026-09-18 | 2026-09-21 |
| CVE-2026-93589 json | ImageMagick before 7.1.2-31 and 6.9.13-56 contains a division-by-zero flaw in the FLIF encoder. An incorrect value for ticks ... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-93588 json | ImageMagick before 7.1.2-31 and before 6.9.13-56 contains a NULL pointer dereference in the PNM coder. When the coder reaches... | Not Provided | 2026-09-18 | 2026-09-22 |
| CVE-2026-93587 json | ImageMagick before 7.1.2-31 and before 6.9.13-56 contains a policy bypass in the PCD (and, per the upstream advisory, CUBE an... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-93586 json | ImageMagick before 7.1.2-31 and before 6.9.13-56 contains a use-after-free vulnerability in the ImagesToBlob method, caused b... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-87909 json | The WP Photo Album Plus plugin for WordPress is vulnerable to Remote Code Execution in all versions via the wppa_image_magick... | Not Provided | 2026-09-19 | 2026-09-19 |
| CVE-2026-86425 json | ImageMagick before 7.1.2-30 and 6.9.x before 6.9.13-55 contains a heap-use-after-free vulnerability in the Layer method of Pe... | Not Provided | 2026-09-07 | 2026-09-09 |
| CVE-2026-86424 json | ImageMagick before 7.1.2-30 and 6.9.13-55 contains a time-of-check-time-of-use (TOCTOU) vulnerability in the video decoder th... | Not Provided | 2026-09-07 | 2026-09-19 |
| CVE-2026-86423 json | ImageMagick before 7.1.2-30 and 6.9.x before 6.9.13-55 contains a heap-use-after-free vulnerability in the GetList method of ... | Not Provided | 2026-09-07 | 2026-09-08 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Imagemagick | Imagemagick | 7.0.9.0 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-9 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-8 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-7 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-6 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-5 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-4 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-3 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-27 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-26 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-25 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-24 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-23 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-22 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-21 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-20 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-2 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-19 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-18 | |||
| Application | Imagemagick | Imagemagick | 7.0.9-17 |