Unknown · Imagemagick · CVE-2026-61862
**Name of the Vulnerable Software and Affected Versions**
ImageMagick versions prior to 7.1.2-26
ImageMagick versions prior to 6.9.13-51
**Description**
An information disclosure issue exists when using the `identify` command to display a profile. If the profile value is not printable and debug output is enabled, the system may read past the profile boundary and print a single byte from the end of the profile.
**Recommendations**
Update ImageMagick to version 7.1.2-26 or later.
Update ImageMagick to version 6.9.13-51 or later.
Disable debug output to prevent the disclosure of memory bytes.