Magick.NET-Q16-OpenMP-x86 Security Analysis
Magick.NET-Q16-OpenMP-x86 has 66 known security vulnerabilities in NuGet (.NET). Upgrade to version 14.11.1 or later to resolve all known issues. Data sourced from OSV, enriched with EPSS exploit probability and CISA KEV.
Low Immediate Risk
No actively exploited vulnerabilities detected. Monitor and update in your next maintenance window.
Recommended safe version: 14.11.1
Upgrading to 14.11.1 or later resolves all 66 known vulnerabilities in Magick.NET-Q16-OpenMP-x86. Run: dotnet add package Magick.NET-Q16-OpenMP-x86 --version 14.11.1
Is Magick.NET-Q16-OpenMP-x86 in your project?
Check if you're affected and upgrade to 14.11.1 to stay secure.
Vulnerabilities
66 unique vulnerabilities — sorted by exploitation risk (KEV → EPSS → CVSS). Click a CVE/GHSA ID for full details.
| CVE / GHSA | Severity | Affected | Fixed In |
|---|---|---|---|
| CVE-2026-25965 ImageMagick: Policy bypass through path traversal allows reading restricted content despite secured policy | HIGH | All versions | 14.10.3 |
| CVE-2026-25794 ImageMagick has heap-buffer-overflow via signed integer overflow in WriteUHDRImage when writing UHDR images with large dimensions | HIGH | All versions | 14.10.3 |
| CVE-2026-28693 ImageMagick: Integer overflow in DIB coder can result in out of bounds read or write | HIGH | All versions | 14.10.4 |
| CVE-2026-30929 ImageMagick has stack buffer overflow in MagnifyImage | HIGH | All versions | 14.10.4 |
| CVE-2026-28691 ImageMagick has uninitialized pointer dereference in JBIG decoder | HIGH | All versions | 14.10.4 |
| CVE-2026-25989 ImageMagick: Integer overflow or wraparound and incorrect conversion between numeric types in the internal SVG decoder | HIGH | All versions | 14.10.3 |
| CVE-2026-25985 ImageMagick: Memory allocation with excessive without limits in the internal SVG decoder | HIGH | All versions | 14.10.3 |
| CVE-2026-24485 ImageMagick: Infinite loop vulnerability when parsing a PCD file | HIGH | All versions | 14.10.3 |
| CVE-2026-25968 ImageMagick: MSL attribute stack buffer overflow leads to out of bounds write. | HIGH | All versions | 14.10.3 |
| CVE-2026-25967 ImageMagick: Stack buffer overflow in FTXT reader via oversized integer field | HIGH | All versions | 14.10.3 |
| CVE-2025-53015 ImageMagick has XMP profile write that triggers hang due to unbounded loop | HIGH | All versions | 14.7.0 |
| CVE-2026-28494 ImageMagick vulnerable to stack corruption through long morphology kernel names or arrays | HIGH | All versions | 14.10.4 |
| CVE-2026-28690 ImageMagick has stack write buffer overflow in MNG encoder | MEDIUM | All versions | 14.10.4 |
| CVE-2026-30937 ImageMagick has heap buffer overflow in WriteXWDImage due to CARD32 arithmetic overflow in bytes_per_line calculation | MEDIUM | All versions | 14.10.4 |
| CVE-2026-30931 ImageMagick has heap-based buffer overflow in UHDR encoder | MEDIUM | All versions | 14.10.4 |
| CVE-2026-28686 ImageMagick: Write heap-buffer-overflow in PCL encoder via undersized output buffer | MEDIUM | All versions | 14.10.4 |
| CVE-2026-28493 ImageMagick has Integer Overflow leading to out of bounds write in SIXEL decoder | MEDIUM | All versions | 14.10.4 |
| CVE-2026-26284 ImageMagick: Heap overflow in pcd decoder leads to out of bounds read. | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25982 ImageMagick has Heap Out-of-Bounds Read in DCM Decoder (ReadDCMImage) | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25898 ImageMagick has Global Buffer Overflow (OOB Read) via Negative Pixel Index in UIL and XPM Writer | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25897 ImageMagick: Heap overflow in sun decoder on 32-bit systems may result in out of bounds write | MEDIUM | All versions | 14.10.3 |
| CVE-2026-23952 ImageMagick has a NULL pointer dereference in MSL parser via <comment> tag before image load | MEDIUM | All versions | 14.10.2 |
| CVE-2026-56364 ImageMagick has a Memory Leak in LoadOpenCLDeviceBenchmark() when parsing malformed XML | MEDIUM | All versions | 14.10.2 |
| CVE-2026-22770 ImageMagick releases an invalid pointer in BilateralBlur when memory allocation fails | MEDIUM | All versions | 14.10.2 |
| CVE-2026-28689 ImageMagick has a Path Policy TOCTOU symlink race bypass | MEDIUM | All versions | 14.10.4 |
| CVE-2026-25971 ImageMagick: MSL - Stack overflow in ProcessMSLScript | MEDIUM | All versions | 14.10.3 |
| CVE-2026-26283 ImageMagick has a possible infinite loop in its JPEG encoder when using `jpeg:extent` | MEDIUM | All versions | 14.10.3 |
| CVE-2026-26066 ImageMagick has infinite loop when writing IPTCTEXT leads to denial of service via crafted profile | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25966 ImageMagick's Security Policy Bypass through config/policy-secure.xml via "fd handler" leads to stdin/stdout access | MEDIUM | All versions | 14.10.3 |
| CVE-2026-31853 ImageMagick is vulnerable to heap buffer over-write on 32-bit systems in SFW decoder | MEDIUM | All versions | 14.10.4 |
| CVE-2026-30883 ImageMagick is vulnerable to Heap Overflow when writing extremely large image profile in the PNG encoder | MEDIUM | All versions | 14.10.4 |
| CVE-2026-25797 ImageMagick: Code Injection via PostScript header in ps coders | MEDIUM | All versions | 14.10.3 |
| CVE-2023-1289 ImageMagick: Specially crafted SVG leads to segmentation fault and generate trash files in "/tmp", possible to leverage DoS | MEDIUM | All versions | 13.0.0 |
| CVE-2026-30936 ImageMagick has Heap Buffer Overflow in WaveletDenoiseImage | MEDIUM | All versions | 14.10.4 |
| CVE-2026-32636 ImageMagick has a heap-buffer-overflow in NewXMLTree which could result in crash | MEDIUM | All versions | 14.11.0 |
| CVE-2026-28687 ImageMagick has Heap Use-After-Free in ImageMagick MSL decoder | MEDIUM | All versions | 14.10.4 |
| CVE-2026-25986 ImageMagick has heap buffer overflow in YUV 4:2:2 decoder | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25970 ImageMagick Has Signed Integer Overflow in SIXEL Decoder, Leading to Memory Corruption | MEDIUM | All versions | 14.10.3 |
| CVE-2026-26983 ImageMagick: Invalid MSL <map> can result in a use after free | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25988 ImageMagick: MSL image stack index may fail to refresh, leading to leaked images | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25987 ImageMagick has a heap buffer over-read in its MAP image decoder | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25983 ImageMagick has Use After Free in MSLStartElement in "coders/msl.c" | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25969 Image Magick has a Memory Leak in coders/ashlar.c | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25799 ImageMagick has Division-by-Zero in YUV sampling factor validation, which leads to crash | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25798 ImageMagick has NULL Pointer Dereference in ClonePixelCacheRepository via crafted image | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25796 ImageMagick has memory leak of watermark Image object in ReadSTEGANOImage on multiple error/early-return paths | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25795 ImageMagick has NULL pointer dereference in ReadSFWImage after DestroyImageInfo (sfw.c) | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25638 ImageMagick has memory leak in msl encoder | MEDIUM | All versions | 14.10.3 |
| CVE-2026-25637 ImageMagick: Possible memory leak in ASHLAR encoder | MEDIUM | All versions | 14.10.3 |
| CVE-2026-24484 ImageMagick: Converting multi-layer nested MVG to SVG can cause DoS | MEDIUM | All versions | 14.10.3 |
| CVE-2026-33536 ImageMagick has an Out-of-bounds Write via InterpretImageFilename | MEDIUM | All versions | 14.11.1 |
| CVE-2026-25576 ImageMagick: Out of bounds read in multiple coders read raw pixel data | MEDIUM | All versions | 14.10.3 |
| CVE-2026-28692 ImageMagick has a heap buffer over-read via 32-bit integer overflow in MAT decoder | MEDIUM | All versions | 14.10.4 |
| CVE-2026-30935 ImageMagick has Heap Buffer Over-Read in BilateralBlurImage | MEDIUM | All versions | 14.10.4 |
| CVE-2026-33535 ImageMagick has an Out-of-Bounds write of a zero byte in its X11 display interaction | MEDIUM | All versions | 14.11.1 |
| CVE-2026-28688 ImageMagick has heap use-after-free in the MSL encoder | MEDIUM | All versions | 14.10.4 |
| CVE-2026-27799 ImageMagick has a heap Buffer Over-read in its DJVU image format handler | MEDIUM | All versions | 14.10.3 |
| CVE-2026-27798 ImageMagick: Heap Buffer Over-read in WaveletDenoise when processing small images | MEDIUM | All versions | 14.10.3 |
| CVE-2026-56368 ImageMagick: Memory Leak in multiple coders that write raw pixel data | LOW | All versions | 14.10.3 |
| CVE-2026-56378 ImageMagick: Malicious PCD files trigger 1‑byte heap Out-of-bounds Read and DoS | LOW | All versions | 14.10.3 |
| CVE-2026-56373 mageMagick has a possible use-after-free write in its PDB decoder | LOW | All versions | 14.10.3 |
| CVE-2026-56376 ImageMagick has a possible heap Use After Free vulnerability in its meta coder | LOW | All versions | 14.10.3 |
| CVE-2026-25984 ImageMagick: Integer Overflow in PSB (PSD v2) RLE decoding path causes heap Out of Bounds reads for 32-bit builds | LOW | All versions | 14.10.3 |
| CVE-2026-56366 ImageMagick: META reader memory leak in the APP1JPEG input path | LOW | All versions | 14.11.1 |
| CVE-2026-56375 ImageMagick has possible memory leak in ASHLAR coder when action fails | LOW | All versions | 14.11.1 |
| CVE-2026-56362 ImageMagick: Heap-based Buffer Overflow in GetPixelIndex due to metadata-cache desynchronization | LOW | All versions | 14.10.3 |
About This Data
Vulnerability data for Magick.NET-Q16-OpenMP-x86 is sourced from the Open Source Vulnerability (OSV) database, aggregating reports from GitHub Advisory Database, NIST NVD, and ecosystem-specific sources.
CVSS (Common Vulnerability Scoring System) scores reflect exploitability and impact. EPSS (Exploit Prediction Scoring System) scores indicate the probability of exploitation within the next 30 days. Vulnerabilities marked with are listed in the CISA Known Exploited Vulnerabilities (KEV) catalog.
Related NuGet (.NET) Packages
Other packages in this ecosystem, ranked by shared vulnerabilities where available.
Check Your Dependencies
Scan your project to check if you're using a vulnerable version of Magick.NET-Q16-OpenMP-x86.