Magick.NET-Q16-x64
NuGet151 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting Magick.NET-Q16-x64page 2 of 4
- CVE-2026-28494HIGHCVSS 7.1EG 7.1✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a stack buffer overflow exists in ImageMagick's morphology kernel parsing functions. User-controlled k…
- CVE-2026-28686MEDIUMCVSS 6.8EG 6.8✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, A heap-buffer-overflow vulnerability exists in the PCL encode due to an undersized output buffer alloc…
- CVE-2026-28687MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a heap use-after-free vulnerability in ImageMagick's MSL decoder allows an attacker to trigger access …
- CVE-2026-28688MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a heap-use-after-free vulnerability exists in the MSL encoder, where a cloned image is destroyed twice…
- CVE-2026-28689MEDIUMCVSS 6.3EG 6.3✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, domain="path" authorization is checked before final file open/use. A symlink swap between check-time a…
- CVE-2026-28690MEDIUMCVSS 6.5EG 6.5✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a stack buffer overflow vulnerability exists in the MNG encoder. There is a bounds checks missing that…
- CVE-2026-28691HIGHCVSS 7.5EG 7.5✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an uninitialized pointer dereference vulnerability exists in the JBIG decoder due to a missing check. …
- CVE-2026-28692MEDIUMCVSS 4.8EG 4.8✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, MAT decoder uses 32-bit arithmetic due to incorrect parenthesization resulting in a heap over-read. Th…
- CVE-2026-28693HIGHCVSS 8.1EG 8.1✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an integer overflow in DIB coder can result in out of bounds read or write. This vulnerability is fixe…
- CVE-2026-30883HIGHCVSS 7.8EG 7.8✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, an extremely large image profile could result in a heap overflow when encoding a PNG image. This vulne…
- CVE-2026-30929HIGHCVSS 7.8EG 7.8✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, MagnifyImage uses a fixed-size stack buffer. When using a specific image it is possible to overflow th…
- CVE-2026-30931HIGHCVSS 7.8EG 7.8✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, a heap-based buffer overflow in the UHDR encoder can happen due to truncation of a value and it would allow an out o…
- CVE-2026-30935MEDIUMCVSS 4.4EG 4.4✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16, BilateralBlurImage contains a heap buffer over-read caused by an incorrect conversion. When processing a crafted ima…
- CVE-2026-30936MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a crafted image could cause an out of bounds heap write inside the WaveletDenoiseImage method. When pr…
- CVE-2026-30937MEDIUMCVSS 6.1EG 6.1✓ Fixed in 14.10.42026-03-10
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, a 32-bit unsigned integer overflow in the XWD (X Windows) encoder can cause an undersized heap buffer …
- CVE-2026-31853MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.10.42026-03-11
vulnerable: 10.0.0 ... 9.1.2 (226 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-16 and 6.9.13-41, an overflow on 32-bit systems can cause a crash in the SFW decoder when processing extremely large images. This…
- CVE-2026-32636HIGHCVSS 7.5EG 7.5✓ Fixed in 14.11.02026-03-18
vulnerable: 10.0.0 ... 9.1.2 (227 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-17 and 6.9.13-42, the NewXMLTree method contains a bug that could result in a crash due to an out of write bounds of a single zer…
- CVE-2026-33535MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.11.12026-03-26
vulnerable: 10.0.0 ... 9.1.2 (228 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, an out-of-bounds write of a zero byte exists in the X11 `display` interaction path that could lead to a crash. …
- CVE-2026-33536MEDIUMCVSS 4.7EG 4.7✓ Fixed in 14.11.12026-03-26
vulnerable: 10.0.0 ... 9.1.2 (228 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to 7.1.2-18 and 6.9.13-43, due to an incorrect return value on certain platforms a pointer is incremented past the end of a buffer that is…
- CVE-2026-33899MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-189 and 6.9.13-44, when `Magick` parses an XML file it is possible that a single zero byte is written out of the bounds.…
- CVE-2026-33901HIGHCVSS 7.5EG 7.5✓ Fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, a heap buffer overflow occurs in the MVG decoder that could result in an out of bounds write when…
- CVE-2026-33902MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, a stack overflow vulnerability in ImageMagick's FX expression parser allows an attacker to crash …
- CVE-2026-33905MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, the -sample operation has an out of bounds read when an specific offset is set through the `sampl…
- CVE-2026-33908HIGHCVSS 7.5EG 7.5✓ Fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below both 7.1.2-19 and 6.9.13-44, Magick frees the memory of the XML tree via the `DestroyXMLTree()` function; however, this proces…
- CVE-2026-40169MEDIUMCVSS 6.2EG 6.2✓ Fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, a crafted image could result in an out of bounds heap write when writing a yaml or json output, resulting in a crash…
- CVE-2026-40183MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, the JXL encoder has an heap write overflow when a user specifies that the image should be encoded as 16 bit floats. …
- CVE-2026-40310MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below both 7.1.2-19 and 6.9.13-44, contain a heap out-of-bounds write in the JP2 encoder with when a user specifies an invalid sampling…
- CVE-2026-40311MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Versions below 7.1.2-19 and 6.9.13-44 contain a heap use-after-free vulnerability that can cause a crash when reading and printing values from a…
- CVE-2026-40312MEDIUMCVSS 6.2EG 6.2✓ Fixed in 14.12.02026-04-13
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions below 7.1.2-19, an off by one error in the MSL decoder could result in a crash when a malicous MSL file is read. This issue has been…
- CVE-2026-42326MEDIUMCVSS 5.1EG 5.1✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when writing an IPTC output file a malicious input file could cause an out of bounds read of a single …
- CVE-2026-45031MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, due to a missing check in the PSD decoder it would be possible to bypass the list-length resource poli…
- CVE-2026-45358MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, an off by one in the meta encoder could result in an out of bounds read of a single byte in the meta e…
- CVE-2026-45359MEDIUMCVSS 5.7EG 5.7✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-22, an invalid connected-components:keep-top value could result in a heap buffer over-read when performing…
- CVE-2026-45624MEDIUMCVSS 5.1EG 5.1✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, when performing a polynomial distortion an out of bounds over-read of 24 bytes can occur when specifyi…
- CVE-2026-45664MEDIUMCVSS 5.3EG 5.3✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-47 and 7.1.2-22, because of a missing check in the MNG coder it would be possible to read more images than the list lim…
- CVE-2026-46520HIGHCVSS 7.5EG 7.5✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when reading multiple images with different dimensions an out of bounds heap write can occur. This iss…
- CVE-2026-46521MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, when using LZMA compression in the MIFF encoder an out of bounds write can occur due to a missing chec…
- CVE-2026-46522HIGHCVSS 7.5EG 7.5✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, due to a missing check in the MIFF decoder, a crafted file could cause an infinite loop resulting in C…
- CVE-2026-46523MEDIUMCVSS 6.2EG 6.2✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2.23 and 6.9.13-48, a crafted MSL image can trigger a heap-use-after-free. Versions 7.1.2.23 and 6.9.13-48 fix the issue.
- CVE-2026-46557MEDIUMCVSS 6.2EG 6.2✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-23, due to a missing depth check a stack overflow can occur in the fx operation by passing a crafted argument. This issue…
- CVE-2026-46559MEDIUMCVSS 4.0EG 4.0✓ Fixed in 14.13.12026-05-18
vulnerable: 10.0.0 ... 9.1.2 (231 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an incorrect check in the JP2 will result in an heap buffer over-write of a single byte when specifyin…
- CVE-2026-46692MEDIUMCVSS 4.1EG 4.1✓ Fixed in 14.12.02026-05-22
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can cause a heap buffer over-write i…
- CVE-2026-46693MEDIUMCVSS 4.1EG 4.1✓ Fixed in 14.12.02026-05-22
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can hijack a file descriptor in the …
- CVE-2026-47165MEDIUMCVSS 4.1EG 4.1✓ Fixed in 14.12.02026-05-22
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, the distributed pixel cache was originally designed to operate without a challenge–response authenti…
- CVE-2026-47166MEDIUMCVSS 5.7EG 5.7✓ Fixed in 14.12.02026-05-22
vulnerable: 10.0.0 ... 9.1.2 (229 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-23, an attacker who can connect to a magick -distribute-cache service can cause a heap buffer over-read in…
- CVE-2026-48724MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.14.02026-06-10
vulnerable: 10.0.0 ... 9.1.2 (232 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-24, when using an image with mask the Floyd-Steinberg dithering method it will cause a negative heap buffer over-write. T…
- CVE-2026-48733MEDIUMCVSS 4.7EG 4.7✓ Fixed in 14.14.02026-06-10
vulnerable: 10.0.0 ... 9.1.2 (232 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-49 and 7.1.2-24, an infinite loop in the subimage-search operation can happen when using a crafted image. This issue ha…
- CVE-2026-48734MEDIUMCVSS 5.5EG 5.5✓ Fixed in 14.14.02026-06-10
vulnerable: 10.0.0 ... 9.1.2 (232 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-49 and 7.1.2-24, a crafted MVG file could result in a stack overflow due to a missing depth or visited-set check. This …
- CVE-2026-48994MEDIUMCVSS 5.9EG 5.9✓ Fixed in 14.14.02026-06-10
vulnerable: 10.0.0 ... 9.1.2 (232 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, a missing check of a return value could lead to a heap buffer over-write in the MAT decoder on 32-bit …
- CVE-2026-49218HIGHCVSS 7.5EG 7.5✓ Fixed in 14.14.02026-06-10
vulnerable: 10.0.0 ... 9.1.2 (232 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-48 and 7.1.2-24, a missing check in the DCM decoder could result in an image with invalid dimensions and that could cau…
Check whether Magick.NET-Q16-x64 is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for Magick.NET-Q16-x64 CVEs against the assets you own.
Start Free Scan →