Magick.NET-Q16-HDRI-AnyCPU
NuGet161 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting Magick.NET-Q16-HDRI-AnyCPUpage 2 of 4
- CVE-2026-26284CRITICALCVSS 9.1EG 9.1fixed in 14.10.32026-02-24
vulnerable: 10.0.0 ... 9.1.2 (206 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, ImageMagick lacks proper boundary checking when processing Huffman-coded data from PCD (Photo CD) file…
- CVE-2026-26983MEDIUMCVSS 5.3EG 5.3fixed in 14.10.32026-02-24
vulnerable: 10.0.0 ... 9.1.2 (206 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, the MSL interpreter crashes when processing a invalid `<map>` element that causes it to use an image a…
- CVE-2026-27798HIGHCVSS 7.1EG 7.1fixed in 14.10.32026-02-26
vulnerable: 10.0.0 ... 9.1.2 (206 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer over-read vulnerability occurs when processing an image with small dimension using the `…
- CVE-2026-27799MEDIUMCVSS 4.4EG 4.4fixed in 14.10.32026-02-26
vulnerable: 10.0.0 ... 9.1.2 (206 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer over-read vulnerability exists in the DJVU image format handler. The vulnerability occur…
- CVE-2026-28493MEDIUMCVSS 6.5EG 6.5fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, an integer overflow vulnerability exists in the SIXEL decoer. The vulnerability allows an attacker to perform an out…
- CVE-2026-28494HIGHCVSS 7.1EG 7.1fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a stack buffer overflow exists in ImageMagick's morphology kernel parsing functions. User-controlled k…
- CVE-2026-28686MEDIUMCVSS 6.8EG 6.8fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, A heap-buffer-overflow vulnerability exists in the PCL encode due to an undersized output buffer alloc…
- CVE-2026-28687MEDIUMCVSS 5.3EG 5.3fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a heap use-after-free vulnerability in ImageMagick's MSL decoder allows an attacker to trigger access …
- CVE-2026-28688MEDIUMCVSS 5.3EG 5.3fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a heap-use-after-free vulnerability exists in the MSL encoder, where a cloned image is destroyed twice…
- CVE-2026-28689MEDIUMCVSS 6.3EG 6.3fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, domain="path" authorization is checked before final file open/use. A symlink swap between check-time a…
- CVE-2026-28690MEDIUMCVSS 6.5EG 6.5fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a stack buffer overflow vulnerability exists in the MNG encoder. There is a bounds checks missing that…
- CVE-2026-28691HIGHCVSS 7.5EG 7.5fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an uninitialized pointer dereference vulnerability exists in the JBIG decoder due to a missing check. …
- CVE-2026-28692MEDIUMCVSS 4.8EG 4.8fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, MAT decoder uses 32-bit arithmetic due to incorrect parenthesization resulting in a heap over-read. Th…
- CVE-2026-28693HIGHCVSS 8.1EG 8.1fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an integer overflow in DIB coder can result in out of bounds read or write. This vulnerability is fixe…
- CVE-2026-30883HIGHCVSS 7.8EG 7.8fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an extremely large image profile could result in a heap overflow when encoding a PNG image. This vulne…
- CVE-2026-30929HIGHCVSS 7.8EG 7.8fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, MagnifyImage uses a fixed-size stack buffer. When using a specific image it is possible to overflow th…
- CVE-2026-30931HIGHCVSS 7.8EG 7.8fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, a heap-based buffer overflow in the UHDR encoder can happen due to truncation of a value and it would allow an out o…
- CVE-2026-30935MEDIUMCVSS 4.4EG 4.4fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, BilateralBlurImage contains a heap buffer over-read caused by an incorrect conversion. When processing a crafted ima…
- CVE-2026-30936MEDIUMCVSS 5.5EG 5.5fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a crafted image could cause an out of bounds heap write inside the WaveletDenoiseImage method. When pr…
- CVE-2026-30937MEDIUMCVSS 6.1EG 6.1fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a 32-bit unsigned integer overflow in the XWD (X Windows) encoder can cause an undersized heap buffer …
- CVE-2026-31853MEDIUMCVSS 5.5EG 5.5fixed in 14.10.42026-03-11
vulnerable: 10.0.0 ... 9.1.2 (207 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-16 and 6.9.13-41, an overflow on 32-bit systems can cause a crash in the SFW decoder when processing extremely large images. This…
- CVE-2026-32636HIGHCVSS 7.5EG 7.5fixed in 14.11.02026-03-18
vulnerable: 10.0.0 ... 9.1.2 (208 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-17 and 6.9.13-42, the NewXMLTree method contains a bug that could result in a crash due to an out of write bounds of a single zer…
- CVE-2026-33535MEDIUMCVSS 5.5EG 5.5fixed in 14.11.12026-03-26
vulnerable: 10.0.0 ... 9.1.2 (209 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, an out-of-bounds write of a zero byte exists in the X11 `display` interaction path that could lead to a crash. …
- CVE-2026-33536MEDIUMCVSS 4.7EG 4.7fixed in 14.11.12026-03-26
vulnerable: 10.0.0 ... 9.1.2 (209 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, due to an incorrect return value on certain platforms a pointer is incremented past the end of a buffer that is…
- CVE-2026-33899MEDIUMCVSS 5.3EG 5.3fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-189 and 6.9.13-44, when `Magick` parses an XML file it is possible that a single zero byte is written out of the bounds.…
- CVE-2026-33900MEDIUMCVSS 5.9EG 5.9fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, the viff encoder contains an integer truncation/wraparound issue on 32-bit builds that could trig…
- CVE-2026-33901HIGHCVSS 7.5EG 7.5fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, a heap buffer overflow occurs in the MVG decoder that could result in an out of bounds write when…
- CVE-2026-33902MEDIUMCVSS 5.5EG 5.5fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, a stack overflow vulnerability in ImageMagick's FX expression parser allows an attacker to crash …
- CVE-2026-33905MEDIUMCVSS 5.5EG 5.5fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, the -sample operation has an out of bounds read when an specific offset is set through the `sampl…
- CVE-2026-33908HIGHCVSS 7.5EG 7.5fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, Magick frees the memory of the XML tree via the `DestroyXMLTree()` function; however, this proces…
- CVE-2026-34238MEDIUMCVSS 5.1EG 5.1fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, an integer overflow in the despeckle operation causes a heap buffer overflow on 32-bit builds tha…
- CVE-2026-40169MEDIUMCVSS 6.2EG 6.2fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, a crafted image could result in an out of bounds heap write when writing a yaml or json output, resulting in a crash…
- CVE-2026-40183MEDIUMCVSS 5.5EG 5.5fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, the JXL encoder has an heap write overflow when a user specifies that the image should be encoded as 16 bit floats. …
- CVE-2026-40310MEDIUMCVSS 5.5EG 5.5fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below both 7.1.2-19 and 6.9.13-44, contain a heap out-of-bounds write in the JP2 encoder with when a user specifies an invalid sampling…
- CVE-2026-40311MEDIUMCVSS 5.5EG 5.5fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below 7.1.2-19 and 6.9.13-44 contain a heap use-after-free vulnerability that can cause a crash when reading and printing values from a…
- CVE-2026-40312MEDIUMCVSS 6.2EG 6.2fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, an off by one error in the MSL decoder could result in a crash when a malicous MSL file is read. This issue has been…
- CVE-2026-42326MEDIUMCVSS 5.1EG 5.1fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when writing an IPTC output file a malicious input file could cause an out of bounds read of a single …
- CVE-2026-45031MEDIUMCVSS 5.3EG 5.3fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, due to a missing check in the PSD decoder it would be possible to bypass the list-length resource poli…
- CVE-2026-45358MEDIUMCVSS 5.3EG 5.3fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, an off by one in the meta encoder could result in an out of bounds read of a single byte in the meta e…
- CVE-2026-45359MEDIUMCVSS 5.7EG 5.7fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-22, an invalid connected-components:keep-top value could result in a heap buffer over-read when performing…
- CVE-2026-45624MEDIUMCVSS 5.1EG 5.1fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when performing a polynomial distortion an out of bounds over-read of 24 bytes can occur when specifyi…
- CVE-2026-45664MEDIUMCVSS 5.3EG 5.3fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, because of a missing check in the MNG coder it would be possible to read more images than the list lim…
- CVE-2026-46520HIGHCVSS 7.5EG 7.5fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when reading multiple images with different dimensions an out of bounds heap write can occur. This iss…
- CVE-2026-46521MEDIUMCVSS 5.5EG 5.5fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when using LZMA compression in the MIFF encoder an out of bounds write can occur due to a missing chec…
- CVE-2026-46522HIGHCVSS 7.5EG 7.5fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, due to a missing check in the MIFF decoder, a crafted file could cause an infinite loop resulting in C…
- CVE-2026-46523MEDIUMCVSS 6.2EG 6.2fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, a crafted MSL image can trigger a heap-use-after-free. Versions 7.1.2.23 and 6.9.13-48 fix the issue.
- CVE-2026-46557MEDIUMCVSS 6.2EG 6.2fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-23, due to a missing depth check a stack overflow can occur in the fx operation by passing a crafted argument. This issue…
- CVE-2026-46559MEDIUMCVSS 4.0EG 4.0fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (212 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an incorrect check in the JP2 will result in an heap buffer over-write of a single byte when specifyin…
- CVE-2026-46692MEDIUMCVSS 4.1EG 4.1fixed in 14.12.02026-05-22
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can cause a heap buffer over-write i…
- CVE-2026-46693MEDIUMCVSS 4.1EG 4.1fixed in 14.12.02026-05-22
vulnerable: 10.0.0 ... 9.1.2 (210 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can hijack a file descriptor in the …
Check whether Magick.NET-Q16-HDRI-AnyCPU is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for Magick.NET-Q16-HDRI-AnyCPU CVEs against the assets you own.
Book a Demo →