Magick.NET-Q8-AnyCPU
NuGet160 known CVEs affecting this package
Aggregated from OSV, GitHub Security Advisories, NVD, and vendor advisories. Each CVE links to its full detail page with vendor advisories, patches, fixed versions, and remediation guidance.
CVEs affecting Magick.NET-Q8-AnyCPUpage 4 of 4
- CVE-2026-61866HIGHCVSS 7.5EG 7.5✓ Fixed in 14.15.02026-07-15
vulnerable: 10.0.0 ... 9.1.2 (217 versions)
ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the JNG encoder when a blob cannot be opened. Attackers can trigger the memory leak by providing malformed JNG files that fail blob operations, causing resource exhaustion.
- CVE-2026-61867LOWCVSS 2.9EG 2.9✓ Fixed in 14.15.02026-07-15
vulnerable: 10.0.0 ... 9.1.2 (217 versions)
ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the TIFF encoder when memory allocation fails. Attackers can trigger allocation failures during TIFF image processing to cause memory exhaustion and denial of service.
- CVE-2026-61868LOWCVSS 3.7EG 3.7✓ Fixed in 14.15.02026-07-15
vulnerable: 10.0.0 ... 9.1.2 (217 versions)
ImageMagick before 7.1.2-26 and 6.9.x before 6.9.13-51 contains a memory leak in the YUV decoder that occurs when opening of the blob fails. Repeated triggering can lead to resource exhaustion (denial of service).
- CVE-2026-61869LOWCVSS 2.9EG 2.9✓ Fixed in 14.15.02026-07-15
vulnerable: 10.0.0 ... 9.1.2 (217 versions)
ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the MIFF encoder that occurs when a memory allocation fails during MIFF image processing, which can lead to denial of service.
- CVE-2026-61870HIGHCVSS 7.5EG 7.5✓ Fixed in 14.15.02026-07-11
vulnerable: 10.0.0 ... 9.1.2 (217 versions)
ImageMagick before 7.1.2-26 contains a memory leak vulnerability in the VIFF encoder when memory allocation fails. Attackers can trigger allocation failures by processing specially crafted VIFF images to exhaust available memory and cause …
- CVE-2026-61871LOWCVSS 3.7EG 3.7✓ Fixed in 14.15.02026-07-15
vulnerable: 10.0.0 ... 9.1.2 (217 versions)
ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the ICON decoder that occurs when a memory allocation fails. Processing a crafted ICON file that triggers an allocation failure leaks memory, which may lead to a denial of…
- CVE-2026-61872LOWCVSS 2.5EG 2.5✓ Fixed in 14.15.02026-07-15
vulnerable: 10.0.0 ... 9.1.2 (217 versions)
ImageMagick before 7.1.2-26 and 6.9.13-51 contains a memory leak in the TIFF encoder when an invalid tiff:tile-geometry is specified. Supplying malformed tile geometry parameters causes allocated memory not to be released, which can lead t…
- CVE-2026-62343MEDIUMCVSS 4.7EG 4.7✓ Fixed in 14.15.02026-07-24
vulnerable: 10.0.0 ... 9.1.2 (217 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 6.9.13-51 and 7.0.1-0 and above prior to 7.1.2-26, an invalid kernel can cause a heap buffer over-write when performing a m…
- CVE-2026-62363MEDIUMCVSS 5.0EG 5.0✓ Fixed in 14.15.02026-07-24
vulnerable: 10.0.0 ... 9.1.2 (217 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to 7.1.2-27, a heap buffer over-write can occur in the fx operation by passing a crafted argument. This issue has been fixed i…
- CVE-2026-62946MEDIUMCVSS 4.7EG 4.7✓ Fixed in 14.15.02026-07-24
vulnerable: 10.0.0 ... 9.1.2 (217 versions)
ImageMagick is free and open-source software used for editing and manipulating digital images. In versions prior to both 6.9.13-52 and 7.1.2-27, processing an extremely large JNX file on 32-bit platforms can cause an integer overflow, lead…
Check whether Magick.NET-Q8-AnyCPU is used in your infrastructure
EchelonGraph scans your cloud and SBOMs to map every package to your actual deployments. See blast radius for Magick.NET-Q8-AnyCPU CVEs against the assets you own.
Start Free Scan →