← Back to CVE search

CVE-2026-56366

ImageMagick

Description

ImageMagick before 7.1.2-18 contains a memory leak vulnerability in the META reader when processing APP1JPEG input paths. Attackers can trigger this memory leak by providing specially crafted APP1JPEG image files, causing denial of service through resource exhaustion.

CVSS 3.3EPSS 0.169%Risk 0.34
View source
Published
2026-07-10 15:16:43
Affected versions
<7.1.2-18
Type
Library
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L