PT-2026-107982 · Imagemagick · Imagemagick

·

CVE-2026-105823

·

Publicado

2026-10-08

·

Atualizado

2026-10-08

CVSS v3.1

4.0

Média

VetorAV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L
ImageMagick before 6.9.13-56 and 7.x before 7.1.2-31 lacks a security policy check in the CUT encoder, allowing configured security policies to be bypassed. Attackers can supply crafted input processed by the CUT encoder to crash the application or leak sensitive data.

Correção

Improper Access Control

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-105823

Produtos afetados

Imagemagick