Magick.NET-Q16-HDRI-AnyCPU Security Analysis
Magick.NET-Q16-HDRI-AnyCPU has 158 known security vulnerabilities in NuGet (.NET). Upgrade to version 14.15.0 or later to resolve all known issues. Data sourced from OSV, enriched with EPSS exploit probability and CISA KEV.
Low Immediate Risk
No actively exploited vulnerabilities detected. Monitor and update in your next maintenance window.
Recommended safe version: 14.15.0
Upgrading to 14.15.0 or later resolves all 158 known vulnerabilities in Magick.NET-Q16-HDRI-AnyCPU. Run: dotnet add package Magick.NET-Q16-HDRI-AnyCPU --version 14.15.0
Is Magick.NET-Q16-HDRI-AnyCPU in your project?
Check if you're affected and upgrade to 14.15.0 to stay secure.
Vulnerabilities
158 unique vulnerabilities — sorted by exploitation risk (KEV → EPSS → CVSS). Click a CVE/GHSA ID for full details.
| CVE / GHSA | Severity | Affected | Fixed In |
|---|---|---|---|
| CVE-2026-25965 ImageMagick: Policy bypass through path traversal allows reading restricted content despite secured policy | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2025-55154 imagemagick: integer overflows in MNG magnification | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+194 more) | 14.8.0 |
| CVE-2026-25794 ImageMagick has heap-buffer-overflow via signed integer overflow in WriteUHDRImage when writing UHDR images with large dimensions | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-28693 ImageMagick: Integer overflow in DIB coder can result in out of bounds read or write | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-30929 ImageMagick has stack buffer overflow in MagnifyImage | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-53461 ImageMagick has out-of-bounds write in ICON decoder due to incorrect loop | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-53460 ImageMagick: Policy Bypass can Trigger an Out-of-Memory condition | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-49218 ImageMagick: Policy Bypass in DCM decoder could result in image with invalid dimensions | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-46522 ImageMagick: Infinite Loop in the MIFF decoder can lead to CPU exhaustion | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-46520 ImageMagick: Heap Buffer Over-Write in IPL decoder when reading multiple images of different dimensions | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-33901 ImageMagick has a heap Buffer Overflow in ImageMagick MVG decoder | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-33908 ImageMagick has a Stack Overflow in DestroyXMLTree() | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-28691 ImageMagick has uninitialized pointer dereference in JBIG decoder | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-25989 ImageMagick: Integer overflow or wraparound and incorrect conversion between numeric types in the internal SVG decoder | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25985 ImageMagick: Memory allocation with excessive without limits in the internal SVG decoder | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-24485 ImageMagick: Infinite loop vulnerability when parsing a PCD file | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-24481 ImageMagick has Possible Heap Information Disclosure in PSD ZIP Decompression | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25968 ImageMagick: MSL attribute stack buffer overflow leads to out of bounds write. | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25967 ImageMagick: Stack buffer overflow in FTXT reader via oversized integer field | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2025-55004 imagemagick: heap-buffer overflow read in MNG magnification with alpha | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+194 more) | 14.8.0 |
| CVE-2025-55298 ImageMagick has a Format String Bug in InterpretImageFilename leads to arbitrary code execution | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+195 more) | 14.8.1 |
| CVE-2025-53015 ImageMagick has XMP profile write that triggers hang due to unbounded loop | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+193 more) | 14.7.0 |
| CVE-2025-53101 ImageMagick has a Stack Buffer Overflow in image.c | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+193 more) | 14.7.0 |
| CVE-2026-28494 ImageMagick vulnerable to stack corruption through long morphology kernel names or arrays | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2025-66628 ImageMagick is vulnerable to an integer Overflow in TIM decoder leading to out of bounds read (32-bit only) | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+199 more) | 14.10.0 |
| CVE-2025-57803 ImageMagick (WriteBMPImage): 32-bit integer overflow when writing BMP scanline stride → heap buffer overflow | HIGH | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+195 more) | 14.8.1 |
| CVE-2026-28690 ImageMagick has stack write buffer overflow in MNG encoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-30937 ImageMagick has heap buffer overflow in WriteXWDImage due to CARD32 arithmetic overflow in bytes_per_line calculation | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-30931 ImageMagick has heap-based buffer overflow in UHDR encoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-28686 ImageMagick: Write heap-buffer-overflow in PCL encoder via undersized output buffer | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-53466 ImageMagick: Heap Buffer Over-Read in XCF decoder due to integer conversion overflow | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-28493 ImageMagick has Integer Overflow leading to out of bounds write in SIXEL decoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-26284 ImageMagick: Heap overflow in pcd decoder leads to out of bounds read. | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25982 ImageMagick has Heap Out-of-Bounds Read in DCM Decoder (ReadDCMImage) | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25898 ImageMagick has Global Buffer Overflow (OOB Read) via Negative Pixel Index in UIL and XPM Writer | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25897 ImageMagick: Heap overflow in sun decoder on 32-bit systems may result in out of bounds write | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-23952 ImageMagick has a NULL pointer dereference in MSL parser via <comment> tag before image load | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+201 more) | 14.10.2 |
| CVE-2026-56364 ImageMagick has a Memory Leak in LoadOpenCLDeviceBenchmark() when parsing malformed XML | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+201 more) | 14.10.2 |
| CVE-2026-22770 ImageMagick releases an invalid pointer in BilateralBlur when memory allocation fails | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+201 more) | 14.10.2 |
| CVE-2026-53465 ImageMagick has a Heap Buffer Over-Write in SF3 encoder when writing multi-frame image | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-28689 ImageMagick has a Path Policy TOCTOU symlink race bypass | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-46557 ImageMagick: Stack overflow in fx operation | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-46523 ImageMagick: Use-After-Free in MSL decoder. | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-55628 ImageMagick: Policy Bypass in concatenate operation due to missing checks | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-40312 ImageMagick has an off-by-one error in MSL decoder could result in crash | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-40169 ImageMagick has a heap buffer overflow (WRITE) in the YAML and JSON encoders. | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-25971 ImageMagick: MSL - Stack overflow in ProcessMSLScript | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-26283 ImageMagick has a possible infinite loop in its JPEG encoder when using `jpeg:extent` | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-26066 ImageMagick has infinite loop when writing IPTCTEXT leads to denial of service via crafted profile | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-53462 ImageMagick has a Use-After-Free when allocation in CheckPrimitiveExtent fails | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-48994 ImageMagick has a Heap Buffer Over-Write in MAT decoder on 32-bit systems | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-25966 ImageMagick's Security Policy Bypass through config/policy-secure.xml via "fd handler" leads to stdin/stdout access | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2025-55160 ImageMagick has Undefined Behavior (function-type-mismatch) in CloneSplayTree | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+194 more) | 14.8.0 |
| CVE-2026-47166 ImageMagick: Heap Buffer Over-Read in distributed pixel cache server | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-45359 ImageMagick: Out-of-Bounds Read in connected components when the user supplies an invalid keep-top define | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-31853 ImageMagick is vulnerable to heap buffer over-write on 32-bit systems in SFW decoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-30883 ImageMagick is vulnerable to Heap Overflow when writing extremely large image profile in the PNG encoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-25797 ImageMagick: Code Injection via PostScript header in ps coders | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-55597 ImageMagick: Heap Buffer Over-Write in JP2 encoder when due to incorrect handling of arguments | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-55510 ImageMagick: Use-After-Free in crafted 8BIM when identifying an image | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-49219 ImageMagick: Policy Bypass can read disallowed files via symlink | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-48734 ImageMagick Vulnerable to Stack Overflow in its MVG Decoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-48724 ImageMagick has a Heap Buffer Underwrite in the Floyd-Steinberg depth dithering method | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-46521 ImageMagick: Heap Buffer Over-Write in MIFF encoder when using LZMA compression | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-40311 ImageMagick has a heap-use-after-free via XMP profile could result in a crash when printing the values. | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-40310 ImageMagick has a heap out-of-bounds write in JP2 encoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-40183 ImageMagick has a heap buffer overflow when encoding JXL image with a 16-bit float | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-33905 ImageMagick has an out-of-bounds read in sample operation | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-33902 ImageMagick has a Stack Overflow via Recursive FX Expression Parsing | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2023-1289 ImageMagick: Specially crafted SVG leads to segmentation fault and generate trash files in "/tmp", possible to leverage DoS | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+170 more) | 13.0.0 |
| CVE-2026-30936 ImageMagick has Heap Buffer Overflow in WaveletDenoiseImage | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-55594 ImageMagick: Stack Overflow in MVG decoder due to missing depth check. | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-53467 ImageMagick: Information Disclosure in MNG decoder because allocated memory is left unchanged | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-23874 ImageMagick MSL: Stack overflow via infinite recursion in ProcessMSLScript | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+201 more) | 14.10.2 |
| CVE-2026-45664 ImageMagick: Policy Bypass in MNG coder could | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-45031 ImageMagick: Policy Bypass in PSD decoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-45358 ImageMagick: Out-of-Bounds Read of a single byte in meta encoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-33899 ImageMagick has a heap-Buffer-Overflow write of a single zero byte when parsing xml. | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-32636 ImageMagick has a heap-buffer-overflow in NewXMLTree which could result in crash | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+204 more) | 14.11.0 |
| CVE-2026-28687 ImageMagick has Heap Use-After-Free in ImageMagick MSL decoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-25986 ImageMagick has heap buffer overflow in YUV 4:2:2 decoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25970 ImageMagick Has Signed Integer Overflow in SIXEL Decoder, Leading to Memory Corruption | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-26983 ImageMagick: Invalid MSL <map> can result in a use after free | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25988 ImageMagick: MSL image stack index may fail to refresh, leading to leaked images | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25987 ImageMagick has a heap buffer over-read in its MAP image decoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25983 ImageMagick has Use After Free in MSLStartElement in "coders/msl.c" | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25969 Image Magick has a Memory Leak in coders/ashlar.c | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25799 ImageMagick has Division-by-Zero in YUV sampling factor validation, which leads to crash | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25798 ImageMagick has NULL Pointer Dereference in ClonePixelCacheRepository via crafted image | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25796 ImageMagick has memory leak of watermark Image object in ReadSTEGANOImage on multiple error/early-return paths | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25795 ImageMagick has NULL pointer dereference in ReadSFWImage after DestroyImageInfo (sfw.c) | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25638 ImageMagick has memory leak in msl encoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25637 ImageMagick: Possible memory leak in ASHLAR encoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-24484 ImageMagick: Converting multi-layer nested MVG to SVG can cause DoS | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2025-68618 ImageMagick's failure to limit the depth of SVG file reads caused a DoS attack | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+200 more) | 14.10.1 |
| CVE-2026-45624 ImageMagick: Heap Buffer Over-Read of a 4 bytes in distort operation. | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-42326 ImageMagick: Heap Buffer Over-Read in IPTC encoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-62363 ImageMagick: Heap Buffer Over-Write in fx operation | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-33900 ImageMagick has a heap overflow caused by integer overflow/wraparound in viff encoder on 32-bit builds | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-33536 ImageMagick has an Out-of-bounds Write via InterpretImageFilename | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+205 more) | 14.11.1 |
| CVE-2026-25576 ImageMagick: Out of bounds read in multiple coders read raw pixel data | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-62343 ImageMagick: Heap Buffer Over-Write in morphology operation when an invalid kernel is provided | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-55595 ImageMagick: Infinite Loop in connected-components when providing invalid arguments | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-48733 ImageMagick has an Infinite Loop in subimage-search with crafted image | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-28692 ImageMagick has a heap buffer over-read via 32-bit integer overflow in MAT decoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-62946 ImageMagick: Integer Overflow in JNX decoder causes heap buffer over-write when processing extremly large files on 32-bit builds | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| GHSA-98cp-rj9f-6v5g ImageMagick has has a stack-buffer-overflow in MNG encoder with oversized pallete | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-53463 ImageMagick has Null Pointer Dereference caused by the distort operation when passing incorrect arguments | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-30935 ImageMagick has Heap Buffer Over-Read in BilateralBlurImage | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-34238 ImageMagick has an integer overflow in despeckle operation causing a heap buffer overflow on 32-bit builds | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-47165 ImageMagick: Information Disclosure in distributed pixel cache server because it is not using a challenge–response authentication model | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-46693 ImageMagick: Race Condition in distributed pixel cache server can result in file descriptor hijacking | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-46692 ImageMagick: Heap Buffer Over-Write in distributed pixel cache server | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-53464 ImageMagick: Memory Leak in wand option parser when providing invalid arguments | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+209 more) | 14.14.0 |
| CVE-2026-46559 ImageMagick: Heap Buffer Over-Write of a single byte in the JP2 encoder. | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+208 more) | 14.13.1 |
| CVE-2026-33535 ImageMagick has an Out-of-Bounds write of a zero byte in its X11 display interaction | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+205 more) | 14.11.1 |
| CVE-2026-28688 ImageMagick has heap use-after-free in the MSL encoder | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+203 more) | 14.10.4 |
| CVE-2026-27799 ImageMagick has a heap Buffer Over-read in its DJVU image format handler | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-27798 ImageMagick: Heap Buffer Over-read in WaveletDenoise when processing small images | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2025-68950 ImageMagick's failure to limit MVG mutual causes Stack Overflow | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+200 more) | 14.10.1 |
| GHSA-jqq5-8px3-9m6m ImageMagick: Heap Buffer Over-Write in json and yaml encoder of a single byte due to incorrect fix | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2025-62171 ImageMagick has Integer Overflow in BMP Decoder (ReadBMP) | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+197 more) | 14.9.0 |
| GHSA-hc76-7mpc-qjqh ImageMagick: Code injection in HTML encoder due to incomplete fix of CVE-2026-25797 | MEDIUM | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-61871 ImageMagick: Memory Leak in ICON decoder when allocation fails | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61868 ImageMagick: Memory Leak in YUV decoder when opening of blob fails | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61861 ImageMagick: Use-After-Free in FormatMagickCaption when memory allocation fails | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61860 ImageMagick: Use-After-Free when freetype initialization fails | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61857 ImageMagick: Heap-use-after-free via XMP profile could result in a crash | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-56369 ImageMagick: Information Disclosure in PasskeyEncipherImage via AES-CTR nonce reuse | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-56365 ImageMagick has a memory leak in PNG encoder when writing a MNG image | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-56368 ImageMagick: Memory Leak in multiple coders that write raw pixel data | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-56378 ImageMagick: Malicious PCD files trigger 1‑byte heap Out-of-bounds Read and DoS | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-56373 mageMagick has a possible use-after-free write in its PDB decoder | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-56376 ImageMagick has a possible heap Use After Free vulnerability in its meta coder | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-25984 ImageMagick: Integer Overflow in PSB (PSD v2) RLE decoding path causes heap Out of Bounds reads for 32-bit builds | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2025-55212 ImageMagick affected by divide-by-zero in ThumbnailImage via montage -geometry ":" leads to crash | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+195 more) | 14.8.1 |
| CVE-2025-53019 ImageMagick has a Memory Leak in magick stream | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+193 more) | 14.7.0 |
| CVE-2025-53014 ImageMagick has a Heap Buffer Overflow in InterpretImageFilename | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+193 more) | 14.7.0 |
| CVE-2026-61859 ImageMagick: Policy Bypass in script operation due to missing checks | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61858 ImageMagick: Policy Bypass in APNG encoder and delegates due to a missing check | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61465 ImageMagick: Policy Bypass possible with matrix-backed operations | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-56363 ImageMagick: Division by Zero in binomial kernel | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-56370 ImageMagick has out-of-bounds access in ConnectedComponentsImage() via CLI-controlled connected-components:* artifacts | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-56372 ImageMagick has a heap buffer overflow read in magnify operation via unrecognized magnify:method value | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-56361 ImageMagick has has an off-by-one origin validation in allows out-of-bounds read in morphology processing | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-56374 ImageMagick has a heap-buffer-overflow in FTXT encoder | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+206 more) | 14.12.0 |
| CVE-2026-56366 ImageMagick: META reader memory leak in the APP1JPEG input path | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+205 more) | 14.11.1 |
| CVE-2026-56375 ImageMagick has possible memory leak in ASHLAR coder when action fails | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+205 more) | 14.11.1 |
| CVE-2026-56362 ImageMagick: Heap-based Buffer Overflow in GetPixelIndex due to metadata-cache desynchronization | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+202 more) | 14.10.3 |
| CVE-2026-61870 ImageMagick: Memory leak in VIFF encoder when allocation fails | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61869 ImageMagick: Memory Leak in MIFF encoder when allocaton fails | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61867 ImageMagick: Memory Leak in TIFF encoder when an allocation fails | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61866 ImageMagick: Memory Leak in JNG encoder when a blob could not be opened | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61865 ImageMagick: Memory Leak in hough lines operation when an operation fails | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61864 ImageMagick: Memory Leak in color transformation to log colorspace when operation fails | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61863 ImageMagick: Memory Leak in TIFF encoder when a temporary file could not be created. | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61862 ImageMagick: Information Disclosure when printing profiles with debug enabled | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
| CVE-2026-61872 ImageMagick: Memory Leak in TIFF encoder when invalid tiff:tile-geometry is specified | LOW | 10.0.0, 10.1.0, 11.0.0, 11.1.0 (+210 more) | 14.15.0 |
About This Data
Vulnerability data for Magick.NET-Q16-HDRI-AnyCPU is sourced from the Open Source Vulnerability (OSV) database, aggregating reports from GitHub Advisory Database, NIST NVD, and ecosystem-specific sources.
CVSS (Common Vulnerability Scoring System) scores reflect exploitability and impact. EPSS (Exploit Prediction Scoring System) scores indicate the probability of exploitation within the next 30 days. Vulnerabilities marked with are listed in the CISA Known Exploited Vulnerabilities (KEV) catalog.
Related NuGet (.NET) Packages
Other packages in this ecosystem, ranked by shared vulnerabilities where available.
Check Your Dependencies
Scan your project to check if you're using a vulnerable version of Magick.NET-Q16-HDRI-AnyCPU.