Page 1 of 1

CVE-2026-53466 - ImageMagick: Heap Buffer Over-Read in XCF decoder due to integer conversion overflow

Posted: Wed Jul 01, 2026 9:27 pm
by Starburst-David
CVE ID: CVE-2026-53466
Published: July 1, 2026
Description: ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 6.9.13-51 and 7.1.2-26, an integer overflow in the XCF decoder can result in an out of bounds read when a crafted image is read, potentially resulting in a crash. This issue has been fixed in versions 6.9.13-51 and 7.1.2-26.
Severity: 0.0 | NA

More Information:
https://cvefeed.io/vuln/detail/CVE-2026-53466