CVE-2026-55628 - ImageMagick: Policy Bypass in concatenate operation due to missing checks

CVE Advisories
Post Reply
Starburst-David
Posts: 286
Joined: Wed Feb 11, 2026 8:31 pm

CVE-2026-55628 - ImageMagick: Policy Bypass in concatenate operation due to missing checks

Post by Starburst-David »

CVE ID: CVE-2026-55628
Published: July 1, 2026
Description: In versions prior to 7.1.2-26he, the `-concatenate` operation is missing policy checks, potentially resulting in both reading and writing to paths disallowed by the security policy. This issue has been fixed in version 7.1.2-26.
Severity: 0.0 | NA

More Information:
https://cvefeed.io/vuln/detail/CVE-2026-55628
 

POSTREACT(ions) SUMMARY

Post Reply

Return to “CVE Advisories”