Magick.NET-Q16-HDRI-OpenMP-x64
NuGet95 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting Magick.NET-Q16-HDRI-OpenMP-x64page 2 of 2
- CVE-2026-27799MEDIUMCVSS 4.4EG 4.4✓ Fixed in 14.10.32026-02-26
vulnerable: 10.0.0 ... 9.1.2 (106 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-15 and 6.9.13-40, a heap buffer over-read vulnerability exists in the DJVU image format handler. The vulnerability occur…
- CVE-2026-28493MEDIUMCVSS 6.5EG 6.5✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, an integer overflow vulnerability exists in the SIXEL decoer. The vulnerability allows an attacker to perform an out…
- CVE-2026-28494HIGHCVSS 7.1EG 7.1✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a stack buffer overflow exists in ImageMagick's morphology kernel parsing functions. User-controlled k…
- CVE-2026-28686MEDIUMCVSS 6.8EG 6.8✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, A heap-buffer-overflow vulnerability exists in the PCL encode due to an undersized output buffer alloc…
- CVE-2026-28687MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a heap use-after-free vulnerability in ImageMagick's MSL decoder allows an attacker to trigger access …
- CVE-2026-28688MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a heap-use-after-free vulnerability exists in the MSL encoder, where a cloned image is destroyed twice…
- CVE-2026-28689MEDIUMCVSS 6.3EG 6.3✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, domain="path" authorization is checked before final file open/use. A symlink swap between check-time a…
- CVE-2026-28690MEDIUMCVSS 6.5EG 6.5✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a stack buffer overflow vulnerability exists in the MNG encoder. There is a bounds checks missing that…
- CVE-2026-28691HIGHCVSS 7.5EG 7.5✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an uninitialized pointer dereference vulnerability exists in the JBIG decoder due to a missing check. …
- CVE-2026-28692MEDIUMCVSS 4.8EG 4.8✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, MAT decoder uses 32-bit arithmetic due to incorrect parenthesization resulting in a heap over-read. Th…
- CVE-2026-28693HIGHCVSS 8.1EG 8.1✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an integer overflow in DIB coder can result in out of bounds read or write. This vulnerability is fixe…
- CVE-2026-30883HIGHCVSS 7.8EG 7.8✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an extremely large image profile could result in a heap overflow when encoding a PNG image. This vulne…
- CVE-2026-30929HIGHCVSS 7.8EG 7.8✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, MagnifyImage uses a fixed-size stack buffer. When using a specific image it is possible to overflow th…
- CVE-2026-30931HIGHCVSS 7.8EG 7.8✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, a heap-based buffer overflow in the UHDR encoder can happen due to truncation of a value and it would allow an out o…
- CVE-2026-30935MEDIUMCVSS 4.4EG 4.4✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, BilateralBlurImage contains a heap buffer over-read caused by an incorrect conversion. When processing a crafted ima…
- CVE-2026-30936MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a crafted image could cause an out of bounds heap write inside the WaveletDenoiseImage method. When pr…
- CVE-2026-30937MEDIUMCVSS 6.1EG 6.1✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a 32-bit unsigned integer overflow in the XWD (X Windows) encoder can cause an undersized heap buffer …
- CVE-2026-31853MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.10.42026-03-11
vulnerable: 10.0.0 ... 9.1.2 (107 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-16 and 6.9.13-41, an overflow on 32-bit systems can cause a crash in the SFW decoder when processing extremely large images. This…
- CVE-2026-32636HIGHCVSS 7.5EG 7.5✓ Fixed in 14.11.02026-03-18
vulnerable: 10.0.0 ... 9.1.2 (108 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-17 and 6.9.13-42, the NewXMLTree method contains a bug that could result in a crash due to an out of write bounds of a single zer…
- CVE-2026-42326MEDIUMCVSS 5.1EG 5.1✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when writing an IPTC output file a malicious input file could cause an out of bounds read of a single …
- CVE-2026-45031MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, due to a missing check in the PSD decoder it would be possible to bypass the list-length resource poli…
- CVE-2026-45358MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, an off by one in the meta encoder could result in an out of bounds read of a single byte in the meta e…
- CVE-2026-45359MEDIUMCVSS 5.7EG 5.7✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-22, an invalid connected-components:keep-top value could result in a heap buffer over-read when performing…
- CVE-2026-45624MEDIUMCVSS 5.1EG 5.1✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when performing a polynomial distortion an out of bounds over-read of 24 bytes can occur when specifyi…
- CVE-2026-45664MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, because of a missing check in the MNG coder it would be possible to read more images than the list lim…
- CVE-2026-46520HIGHCVSS 7.5EG 7.5✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when reading multiple images with different dimensions an out of bounds heap write can occur. This iss…
- CVE-2026-46521MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when using LZMA compression in the MIFF encoder an out of bounds write can occur due to a missing chec…
- CVE-2026-46522HIGHCVSS 7.5EG 7.5✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, due to a missing check in the MIFF decoder, a crafted file could cause an infinite loop resulting in C…
- CVE-2026-46523MEDIUMCVSS 6.2EG 6.2✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, a crafted MSL image can trigger a heap-use-after-free. Versions 7.1.2.23 and 6.9.13-48 fix the issue.
- CVE-2026-46557MEDIUMCVSS 6.2EG 6.2✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-23, due to a missing depth check a stack overflow can occur in the fx operation by passing a crafted argument. This issue…
- CVE-2026-46559MEDIUMCVSS 4.0EG 4.0✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (112 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an incorrect check in the JP2 will result in an heap buffer over-write of a single byte when specifyin…
- CVE-2026-56361HIGHCVSS 7.1EG 7.1✓ Fixed in 14.12.02026-07-01
vulnerable: 10.0.0 ... 9.1.2 (110 versions)
ImageMagick before 7.1.2-19 contains an off-by-one error in morphology validation allowing out-of-bounds heap buffer reads. Attackers can trigger heap buffer overflow by providing incorrect morphology parameters causing single pixel memory…
- CVE-2026-56362MEDIUMCVSS 4.2EG 4.2✓ Fixed in 14.10.32026-07-08
vulnerable: 10.0.0 ... 9.1.2 (106 versions)
ImageMagick before 7.1.2-15 contains a heap-buffer-overflow read vulnerability in GetPixelIndex caused by OpenPixelCache updating image channel metadata before pixel cache memory allocation. Attackers can trigger memory and disk allocation…
- CVE-2026-56364LOWCVSS 1.9EG 1.9✓ Fixed in 14.10.22026-07-01
vulnerable: 10.0.0 ... 9.1.2 (105 versions)
ImageMagick before 7.1.2-13 contains a memory leak vulnerability in LoadOpenCLDeviceBenchmark() function when parsing malformed OpenCL device profile XML files with unclosed device elements. Attackers with write access to the OpenCL cache …
- CVE-2026-56365MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.12.02026-07-01
vulnerable: 10.0.0 ... 9.1.2 (110 versions)
ImageMagick before 7.1.2-19 contains a memory leak vulnerability in the PNG encoder when writing MNG images. Attackers can trigger the encoder failure condition to exhaust memory resources and cause denial of service.
- CVE-2026-56367CRITICALCVSS 9.1EG 9.1✓ Fixed in 14.10.32026-06-21
vulnerable: 10.0.0 ... 9.1.2 (106 versions)
ImageMagick before 7.1.2-15 and 6.9.x before 6.9.13-40 contains an integer overflow in the PSB (PSD v2) RLE decoding path (ReadPSDChannelRLE in coders/psd.c) that causes a heap out-of-bounds read on 32-bit builds. Processing a crafted PSB …
- CVE-2026-56368HIGHCVSS 7.5EG 7.5✓ Fixed in 14.10.32026-02-25
vulnerable: 10.0.0 ... 9.1.2 (106 versions)
ImageMagick before 7.1.2-15 contains a memory leak vulnerability in multiple coders that write raw pixel data where allocated objects are not properly freed. Attackers can trigger this leak by processing specially crafted images, causing m…
- CVE-2026-56370HIGHCVSS 7.8EG 7.8✓ Fixed in 14.12.02026-04-14
vulnerable: 10.0.0 ... 9.1.2 (110 versions)
ImageMagick before 7.1.2-19 contains an out-of-bounds access vulnerability in ConnectedComponentsImage() when processing connected-components artifacts with invalid indices. Attackers can trigger access violations by specifying malformed c…
- CVE-2026-56371MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.10.32026-06-23
vulnerable: 10.0.0 ... 9.1.2 (106 versions)
ImageMagick before 7.1.2-15 and 6.9.13-40 contains a memory leak in coders/txt.c when processing TXT files with texture attributes: the texture object allocated via ReadImage is not released when GetTypeMetrics fails, leaking memory each t…
- CVE-2026-56372CRITICALCVSS 9.1EG 9.1✓ Fixed in 14.12.02026-07-11
vulnerable: 10.0.0 ... 9.1.2 (110 versions)
ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the magnify operation that allows attackers to read out of bounds memory. An unrecognized magnify:method value triggers an out of bounds read, potentially exposin…
- CVE-2026-56373MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.10.32026-07-10
vulnerable: 10.0.0 ... 9.1.2 (106 versions)
ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in the PDB decoder that uses a stale pointer when memory allocation fails. Attackers can trigger this vulnerability by processing malicious PDB files to cause crashes or w…
- CVE-2026-56374HIGHCVSS 7.1EG 7.1✓ Fixed in 14.12.02026-07-08
vulnerable: 10.0.0 ... 9.1.2 (110 versions)
ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remote attackers can trigger an out of bounds read by crafting malicious FTXT image file…
- CVE-2026-56376LOWCVSS 3.3EG 3.7✓ Fixed in 14.10.32026-06-23
vulnerable: 10.0.0 ... 9.1.2 (106 versions)
ImageMagick before 7.1.2-15 and 6.9.13-40 contains a heap use-after-free in the meta coder: when memory allocation fails, a single byte is written to a stale pointer. Remote attackers can trigger it by processing specially crafted image fi…
- CVE-2026-56378HIGHCVSS 8.2EG 8.2✓ Fixed in 14.10.32026-06-21
vulnerable: 10.0.0 ... 9.1.2 (106 versions)
ImageMagick before 7.1.2-15 (and 6.x before 6.9.13-40) contains a heap out-of-bounds read in the PCD coder's DecodeImage loop. A crafted PCD file can trigger a one-byte heap out-of-bounds read during image decoding, resulting in denial of …
- CVE-2026-56379MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.10.32026-06-23
vulnerable: 10.0.0 ... 9.1.2 (106 versions)
ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Gra…
Check whether Magick.NET-Q16-HDRI-OpenMP-x64 is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for Magick.NET-Q16-HDRI-OpenMP-x64 CVEs against the assets you own.
Start Free Scan →